CVE detail
CVE-2026-43133
In the Linux kernel, the following vulnerability has been resolved: KVM: nSVM: Always use vmcb01 in VMLOAD/VMSAVE emulation Commit cc3ed80ae69f ("KVM: nSVM: always use vmcb01 to for vmsave/vmload of guest state") made KVM always use vmcb01 for the fields controlled by VMSAVE/VMLOAD, but it missed updating the VMLOAD/VMSAVE emulation code to always use vmcb01. As a result, if VMSAVE/VMLOAD is executed by an L2 guest and is not intercepted by L1, KVM will mistakenly use vmcb02. Always use vmcb01 instead of the current VMCB.
Buzz score
Why this CVE is surfacing
This all-time snapshot uses the same composite formula as Trending across a 30-year evidence window, rather than a current rolling window.
Buzz score components · mention 24.0 · diversity 13.0 · KEV 0.0 · OTX 0.0 · PoC 0.0
Why it matters now
Mention timeline
- Total mentions
- 0
- within the 30d window
- Peak daily
- 0
- highest bucket
Evidence
Source links by recency
10 source links · newest first
- https://security.access.redhat.com/data/csaf/v2/vex/2026/cve-2026-43133.jsonsecurity.access.redhat.com
No excerpt available.
Vendor Advisorysecurity.access.redhat.comMay 6, 2026, 12:16 PM - https://bugzilla.redhat.com/show_bug.cgi?id=2467065bugzilla.redhat.com
No excerpt available.
Exploitbugzilla.redhat.comMay 6, 2026, 12:16 PM - https://access.redhat.com/security/cve/CVE-2026-43133access.redhat.com
No excerpt available.
Vendor Advisoryaccess.redhat.comMay 6, 2026, 12:16 PM No excerpt available.
Vendor Advisorygit.kernel.orgMay 6, 2026, 12:16 PMNo excerpt available.
Vendor Advisorygit.kernel.orgMay 6, 2026, 12:16 PMNo excerpt available.
Vendor Advisorygit.kernel.orgMay 6, 2026, 12:16 PMNo excerpt available.
Vendor Advisorygit.kernel.orgMay 6, 2026, 12:16 PMNo excerpt available.
Vendor Advisorygit.kernel.orgMay 6, 2026, 12:16 PMNo excerpt available.
Vendor Advisorygit.kernel.orgMay 6, 2026, 12:16 PMNo excerpt available.
Vendor Advisorygit.kernel.orgMay 6, 2026, 12:16 PM
Exploit code
Public exploit repository references
Public PoC repositories are third-party, potentially unsafe artifacts. Treat their code as untrusted and use it only on authorized systems in an isolated, least-privilege environment. cvebuzz does not execute the code or verify that an exploit works.
0 repository references · best confidence N/A · max 0 stars
Related records
Similar CVEs
6 related CVEs with shared weakness or product evidence
- CVE-2026-25634CVSS 7.8 · High
iccDEV provides a set of libraries and tools that allow for the interaction, manipulation, and application of ICC color management profiles. Prior to 2.3.1.4, SrcPixel and DestPix…
- CVE-2026-21503CVSS 6.1 · Medium
iccDEV provides a set of libraries and tools that allow for the interaction, manipulation, and application of ICC color management profiles. Prior to version 2.3.1.2, iccDEV has u…
- CVE-2025-0325CVSS 4.3 · Medium
A Guard Tour VAPIX API parameter allowed the use of arbitrary values and can be incorrectly called, allowing an attacker to block access to the guard tour configuration page in th…
- CVE-2019-14844CVSS 7.5 · High
A flaw was found in, Fedora versions of krb5 from 1.16.1 to, including 1.17.x, in the way a Kerberos client could crash the KDC by sending one of the RFC 4556 "enctypes". A remote…
- CVE-2019-7303CVSS 7.5 · High
A vulnerability in the seccomp filters of Canonical snapd before version 2.37.4 allows a strict mode snap to insert characters into a terminal on a 64-bit host. The seccomp rules…
- CVE-2026-16422CVSS 7.5 · High
Insufficient validation of untrusted input in Certificate in Google Chrome on Linux prior to 150.0.7871.182 allowed an attacker in a privileged network position to perform domain…