Linux Kernel KVM SEV Page State Change Buffer TOCTOU Vulnerability

Vulnerability

A vulnerability in the Linux kernel's KVM SEV (Secure Encrypted Virtualization) module has been addressed. The issue involved a time-of-check-to-time-of-use (TOCTOU) vulnerability when reading entries from the guest-accessible Page State Change (PSC) buffer. This vulnerability could be exploited by misbehaving guests to interfere with the processing of PSC entries, potentially leading to incorrect behavior in virtual machine management.

Impact

Exploitation of this vulnerability could allow a guest to manipulate the Page State Change processing, potentially causing errors in how the hypervisor manages virtual machine memory states.

Reproduction

The vulnerability could be reproduced by a guest virtual machine that misbehaves or violates the expected interaction with the Page State Change buffer. This could involve sending unexpected or malformed data that the hypervisor processes as part of the normal PSC entry handling.

Remediation

Users can upgrade to the latest version of the Linux kernel where this vulnerability has been fixed. Instructions for downloading the patched kernel can be found on the official Linux kernel website.

Added: Jul 19, 2026, 7:49 PM
Updated: Jul 19, 2026, 7:49 PM

Vulnerability Rating

Custom Algorithm
spread
9.0
impact
0.6
exploitability
3.9
remediation
7.7
relevance
9.7
threat
4.8
urgency
2.9
incentive
0.0

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.