CVE-2026-31564: Linux Kernel

Medium severity, CVSS 5.5. EPSS: 0.1% chance of exploitation in the next 30 days.

In the Linux kernel, the following vulnerability has been resolved: LoongArch: KVM: Fix base address calculation in kvm_eiointc_regs_access() In function kvm_eiointc_regs_access(), the register base address is caculated from array base address plus offset, the offset is absolute value from the base address. The data type of array base address is u64, it should be converted into the "void *" type and then plus the offset.

Affected products

  • Linux Linux Kernel: from 6.19.1, before 6.19.11 (fixed in 6.19.11); version 6.19 only; version 7.0 only

Published 2026-04-24. Last modified 2026-06-17.