CVE-2026-80709
CVE CVE-2026-80709EUVD EUVD-2026-67444Published 2026-08-28T06:53:09.000ZLast changed 2026-08-29T06:22:25.000ZCVSS 7.8
What the advisory describes
In the Linux kernel, the following vulnerability has been resolved: s390/zcrypt: Fix wrong domain value verification with EP11 CPRBs There is a wrong upper limit check for the domain value when an EP11 CPRB is processed for sending to a crypto card. This check is only active on custom device nodes but may lead to access heap memory behind perms->adm when an administrative CPRB is sent. Add correct limit (AP_DOMAINS = 256) checking to fix this.
Source: EUVD (ENISA), in the words of the advisory.
Products the advisory names
These come from the advisory itself, not from any check we performed.
- Linux — Linux patch: 6.1.183; patch: 6.6.151; 5.18; patch: 7.1.8; cfd68b33094e1a92249850ff3c3c92ae9112a541 <983279d7f86ade73db86f886e09172dd567031b5; cfd68b33094e1a92249850ff3c3c92ae9112a541 <4589f742718d0256ea6dd1f5a78be6e689bdb8aa; cfd68b33094e1a92249850ff3c3c92ae9112a541 <13e53d6ae1c3b2ff1be75b9ef09be26f4ec3ce15; patch: 6.18.44; cfd68b33094e1a92249850ff3c3c92ae9112a541 <672b12940e3f1336dfed5287412a71500adf2a76; cfd68b33094e1a92249850ff3c3c92ae9112a541 <b505dcc8307d64468b463dfad45a03bf865c637e; patch: 6.12.103; patch: 0; patch: 7.2; cfd68b33094e1a92249850ff3c3c92ae9112a541 <1223477ca88e2396eca440919d0ca8754df79bd5
The versions shown are the advisory's own. Patchlage compares no version numbers and derives no judgement from them — which version is installed is something a person has to look up.
Carried in the product catalogue
An estate covering these products can be recorded in Patchlage. An advisory about them appears in the next morning's situation report.
- Linux — Linux
Does this concern one of your customers?
This page cannot answer that — it does not know your estate. Whoever has recorded their environments gets the answer the morning after publication, together with a paragraph they can forward to the customer unedited.
Try it for 28 daysPatchlage reports hits and suspected hits. About everything else this system says nothing — neither this page nor the situation report ever claims that an estate is safe.