๐Ÿ” CVE Alert

CVE-2026-72236

UNKNOWN 0.0

s390/perf_cpum_cf: Add missing array_index_nospec() to __hw_perf_event_init()

CVSS Score
0.0
EPSS Score
0.0%
EPSS Percentile
0th

In the Linux kernel, the following vulnerability has been resolved: s390/perf_cpum_cf: Add missing array_index_nospec() to __hw_perf_event_init() ev variable is userspace controlled via event->attr.config and used as an array index after bounds checking, but without speculation barriers. Add the missing array_index_nospec() call to prevent speculative execution.

Vendor linux
Product linux
Ecosystems
Industries
Technology
Published Aug 15, 2026
Stay Ahead of the Next One

Get instant alerts for linux linux

Be the first to know when new unknown vulnerabilities affecting linux linux are published โ€” delivered to Slack, Telegram or Discord.

Get Free Alerts โ†’ Free ยท No credit card ยท 60 sec setup

Affected Versions

Linux / Linux
212188a596d17d519842ef2173150315735b54e1 < 27206bb57c47bdbe33bccc78fa7f7e2a719a06b9 212188a596d17d519842ef2173150315735b54e1 < a21f3615c88421df81060b6ff89220fd34094c4d 212188a596d17d519842ef2173150315735b54e1 < fa1ebae4206e6afc8caa642e9eb1bbe39a9a724f 212188a596d17d519842ef2173150315735b54e1 < f79dff8c721bbb1f3fc312ea55e0551c2cc28801 212188a596d17d519842ef2173150315735b54e1 < 49145bce539117db4b6e9e83c0e5ef528e361050
Linux / Linux
3.4

References

NVD โ†— CVE.org โ†— EPSS Data โ†—
git.kernel.org: https://git.kernel.org/stable/c/27206bb57c47bdbe33bccc78fa7f7e2a719a06b9 git.kernel.org: https://git.kernel.org/stable/c/a21f3615c88421df81060b6ff89220fd34094c4d git.kernel.org: https://git.kernel.org/stable/c/fa1ebae4206e6afc8caa642e9eb1bbe39a9a724f git.kernel.org: https://git.kernel.org/stable/c/f79dff8c721bbb1f3fc312ea55e0551c2cc28801 git.kernel.org: https://git.kernel.org/stable/c/49145bce539117db4b6e9e83c0e5ef528e361050