In the Linux kernel, the following vulnerability has been resolved:
virt/coco/sev-guest: Double-buffer messages
The encryption algorithms read and write directly to shared unencrypted memory, which may leak information as well as permit the host to tamper with the message integrity. Instead, copy whole messages in or out as needed before doing any computation on them.
CVSS Details
- CVSS 3.1 Base Score: 9.3
- CVSS 3.1 Vector: (CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:C/C:H/I:H/A:H)
Covered by Rapid7
| Product | Vendor Advisory | Solution File | Added | Published |
|---|---|---|---|---|
| Amazon_linux_2023 | — | Upgrade kernel-tools-develUpgrade kernel-libbpf-develUpgrade perfUpgrade perf-debuginfoUpgrade kernelUpgrade kernel-toolsUpgrade python3-perfUpgrade kernel-headersUpgrade kernel-debuginfo-common-aarch64Upgrade kernel-tools-debuginfoUpgrade kernel-debuginfo-common-x86_64Upgrade bpftool-debuginfoUpgrade kernel-develUpgrade bpftoolUpgrade kernel-libbpfUpgrade python3-perf-debuginfoUpgrade kernel-libbpf-staticUpgrade kernel-debuginfoUpgrade kernel-livepatch-6.1.29-47.49 | Jan 12, 2026 | Dec 8, 2025 |
| Debian | — | Upgrade linux | Dec 9, 2025 | Dec 9, 2025 |
| Redhat_linux | — | No solution exists | Jul 17, 2026 | Dec 8, 2025 |
Prioritise with Active Threat Intelligence
With curated Threat Intelligence, you can see which vulnerabilities truly put you at risk, prioritize what matters most, and act before attackers do.
Explore Intelligence Hub