CVE-2025-39823
KVM: x86: use array_index_nospec with indices that come from guest
CVSS Score
0.0
EPSS Score
0.0%
EPSS Percentile
0th
In the Linux kernel, the following vulnerability has been resolved: KVM: x86: use array_index_nospec with indices that come from guest min and dest_id are guest-controlled indices. Using array_index_nospec() after the bounds checks clamps these values to mitigate speculative execution side-channels.
| Vendor | linux |
| Product | linux |
| Ecosystems | |
| Industries | Technology |
| Published | Sep 16, 2025 |
| Last Updated | May 12, 2026 |
Stay Ahead of the Next One
Get instant alerts for linux linux
Be the first to know when new unknown vulnerabilities affecting linux linux are published โ delivered to Slack, Telegram or Discord.
Get Free Alerts โ
Free ยท No credit card ยท 60 sec setup
Affected Versions
Linux / Linux
4180bf1b655a791a0a6ef93a2ffffc762722c782 < 72777fc31aa7ab2ce00f44bfa3929c6eabbeaf48 4180bf1b655a791a0a6ef93a2ffffc762722c782 < 31a0ad2f60cb4816e06218b63e695eb72ce74974 4180bf1b655a791a0a6ef93a2ffffc762722c782 < d51e381beed5e2f50f85f49f6c90e023754efa12 4180bf1b655a791a0a6ef93a2ffffc762722c782 < 33e974c2d5a82b2f9d9ba0ad9cbaabc1c8e3985f 4180bf1b655a791a0a6ef93a2ffffc762722c782 < f49161646e03d107ce81a99c6ca5da682fe5fb69 4180bf1b655a791a0a6ef93a2ffffc762722c782 < 67a05679621b7f721bdba37a5d18665d3aceb695 4180bf1b655a791a0a6ef93a2ffffc762722c782 < f57a4bd8d6cb5af05b8ac1be9098e249034639fb 4180bf1b655a791a0a6ef93a2ffffc762722c782 < c87bd4dd43a624109c3cc42d843138378a7f4548
Linux / Linux
4.19
References
git.kernel.org: https://git.kernel.org/stable/c/72777fc31aa7ab2ce00f44bfa3929c6eabbeaf48 git.kernel.org: https://git.kernel.org/stable/c/31a0ad2f60cb4816e06218b63e695eb72ce74974 git.kernel.org: https://git.kernel.org/stable/c/d51e381beed5e2f50f85f49f6c90e023754efa12 git.kernel.org: https://git.kernel.org/stable/c/33e974c2d5a82b2f9d9ba0ad9cbaabc1c8e3985f git.kernel.org: https://git.kernel.org/stable/c/f49161646e03d107ce81a99c6ca5da682fe5fb69 git.kernel.org: https://git.kernel.org/stable/c/67a05679621b7f721bdba37a5d18665d3aceb695 git.kernel.org: https://git.kernel.org/stable/c/f57a4bd8d6cb5af05b8ac1be9098e249034639fb git.kernel.org: https://git.kernel.org/stable/c/c87bd4dd43a624109c3cc42d843138378a7f4548 lists.debian.org: https://lists.debian.org/debian-lts-announce/2025/10/msg00008.html lists.debian.org: https://lists.debian.org/debian-lts-announce/2025/10/msg00007.html cert-portal.siemens.com: https://cert-portal.siemens.com/productcert/html/ssa-032379.html