CVE-2026-53200: Linux Kernel
High severity, CVSS 8.8. EPSS: 0.1% chance of exploitation in the next 30 days.
In the Linux kernel, the following vulnerability has been resolved: KVM: arm64: nv: Fix handling of XN[0] when !FEAT_XNX XN has already been extracted from its bitfield position so using FIELD_PREP() on the mask that clears XN[0] is completely broken, having the effect of unconditionally granting execute permissions... Fix the obvious mistake by manipulating the right bit.
Affected products
- Linux Linux Kernel: from 6.19, before 7.0.13 (fixed in 7.0.13); version 7.1 only
Published 2026-06-25. Last modified 2026-07-06.