CVE-2026-68480
In the Linux kernel, the following vulnerability has been resolved: x86/bugs: Make Safe-RET robust against interrupt injection An attacker injecting interrupts while the Safe-RET mitigation executes on machines affected by SRSO can neutralize the safe return sequence, potentially leading to data leakage through speculative execution. Fixup register state as if the Safe-RET sequence executed successfully by "emulating" it, in a manner of speaking, and avoid executing a RET instruction after returning from the interrupt.
Affected versions
Linux kernel versions
5.10.189,
5.15.125,
6.1.44,
6.4.9,
6.5
and later are affected. Fixed in
5.10.264,
5.15.215,
6.1.182,
6.6.150,
6.12.102,
6.18.43,
7.1.7,
7.2
and their respective stable series.
References
9 totalFrequently asked questions
-
What is CVE-2026-68480?
CVE-2026-68480 is a unscored severity Linux kernel vulnerability . It affects Linux kernel versions from 5.10.189 onward and has been patched in 5.10.264, 5.15.215, 6.1.182 and others. CVE-2026-68480 has not been confirmed as actively exploited and is not listed in the CISA KEV catalog.
-
Is there a patch available for CVE-2026-68480?
Yes. CVE-2026-68480 has been patched. Fixed versions include 5.10.264, 5.15.215, 6.1.182 and others. If you are running Linux kernel 5.10.189 or later up to the fix versions, apply the relevant patch for your kernel branch.
-
Is CVE-2026-68480 actively exploited?
No. CVE-2026-68480 has not been confirmed as actively exploited. It is not listed in the CISA Known Exploited Vulnerabilities (KEV) catalog.