CVE-2026-72280

Summary

In the Linux kernel, the following vulnerability has been resolved:

KVM: arm64: nv: Drop bogus WARN for write to ZCR_EL2

It is entirely possible for a guest to write to the ZCR_EL2 sysreg alias while in a nested context, as it is expected if FEAT_NV2 is advertised to the L1 hypervisor.

Get rid of the bogus WARN which, since the hyp vectors were installed at this point, has the effect of a hyp_panic…

Affected Software

VendorProductVersion RangeStatus
LinuxLinux0cfc85b8f5cf3b77463d61542191c75ba0cc3a5f < 6561597dba97e3e8479a9919bda172cf43eb902caffected
LinuxLinux0cfc85b8f5cf3b77463d61542191c75ba0cc3a5f < 5000bcae71c869cba6674c326fec2d8ad659ae3aaffected
LinuxLinux0cfc85b8f5cf3b77463d61542191c75ba0cc3a5f < 7deadbc5dab5b8e2316364603bc6281129c8461caffected
LinuxLinux0cfc85b8f5cf3b77463d61542191c75ba0cc3a5f < 9f1667098c6ae7ec81a9a56859cfdacb822aa0d0affected
LinuxLinux6.11affected
LinuxLinux0 < 6.11unaffected
LinuxLinux6.12.97 <= 6.12.*unaffected
LinuxLinux6.18.40 <= 6.18.*unaffected
LinuxLinux7.1.5 <= 7.1.*unaffected
LinuxLinux7.2 <= *unaffected

Weaknesses

References