Unrated severityNVD Advisory· Published Jul 25, 2026· Updated Aug 19, 2026
CVE-2026-64507
CVE-2026-64507
Description
In the Linux kernel, the following vulnerability has been resolved:
x86/bugs: Enable IBPB flush on BPF JIT allocation
Enable hardening against JIT spraying when Spectre-v2 mitigations are in use. Specifically, issue an IBPB flush on BPF JIT memory reuse. Skip enabling the IBPB flush if the BPF dispatcher is already using a retpoline sequence.
This hardening applies only when BPF-JIT is in use. Guard the enabling under CONFIG_BPF_JIT so that bugs.c still builds with CONFIG_BPF_JIT=n.
Affected products
3- osv-coords2 versions
< 7.1.7-1.1+ 1 more
- (no CPE)range: < 7.1.7-1.1
- (no CPE)range: >= 5.18.0, < 6.1.183
Patches
Vulnerability mechanics
References
6- git.kernel.org/stable/c/25dbcd31781e2bc3cd63d873af1fcd06f863a126nvd
- git.kernel.org/stable/c/52440e15d9628f8f239373c0f2e5e8f92feea2dfnvd
- git.kernel.org/stable/c/8a4c8af9ae67eb072d90d1b339f14d27a82bd2a1nvd
- git.kernel.org/stable/c/9354248fc1c33a844ca1872761f6668b393e8c37nvd
- git.kernel.org/stable/c/a3af84b0fa00ead01fcd0e28b5d773ff25990a0dnvd
- git.kernel.org/stable/c/cb27f3bf915cc0f20fc0c48da9059304e39ebd35nvd
News mentions
0No linked articles in our index yet.