CVE-2026-43261 (GCVE-0-2026-43261)
Vulnerability from cvelistv5
Published
2026-05-06 11:28
Modified
2026-05-23 16:06
Severity ?
Summary
In the Linux kernel, the following vulnerability has been resolved: arm64: Add support for TSV110 Spectre-BHB mitigation The TSV110 processor is vulnerable to the Spectre-BHB (Branch History Buffer) attack, which can be exploited to leak information through branch prediction side channels. This commit adds the MIDR of TSV110 to the list for software mitigation.
Impacted products
Vendor Product Version
Linux Linux Version: e192c8baa69ac8a5585d61ac535aa1e5eb795e80
Version: 4bbfd0c280254b273c564767021bb9b0f945148e
Version: 558c303c9734af5a813739cd284879227f7297d2
Version: 558c303c9734af5a813739cd284879227f7297d2
Version: 558c303c9734af5a813739cd284879227f7297d2
Version: 558c303c9734af5a813739cd284879227f7297d2
Version: 558c303c9734af5a813739cd284879227f7297d2
Version: 558c303c9734af5a813739cd284879227f7297d2
Version: 4dd8aae585a51a1d276911fe19096ad90144e9fe
Version: 3e3904125fccd042fda24294624e8f66699fd06d
Version: c20d551744797000c4af993f7d59ef8c69732949
Version: 9013fd4bc958b33c3b4d5a2eaf4ded9857600395
Version: 0b2bf1b37b5ebd90e69e30d8c2d6e1cd0c1f37b4
Version: 5.10.105   
Version: 5.15.28   
Version: 4.9.310   
Version: 4.14.275   
Version: 4.19.236   
Version: 5.4.186   
Version: 5.16.14   
Create a notification for this product.
Show details on NVD website


{
  "containers": {
    "cna": {
      "affected": [
        {
          "defaultStatus": "unaffected",
          "product": "Linux",
          "programFiles": [
            "arch/arm64/kernel/proton-pack.c"
          ],
          "repo": "https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git",
          "vendor": "Linux",
          "versions": [
            {
              "lessThan": "598c11dd4f4a9de31d854fcb9702f54c1c70f0d0",
              "status": "affected",
              "version": "e192c8baa69ac8a5585d61ac535aa1e5eb795e80",
              "versionType": "git"
            },
            {
              "lessThan": "a8d0ad5d990b050a6db74218a34b5529085e16b8",
              "status": "affected",
              "version": "4bbfd0c280254b273c564767021bb9b0f945148e",
              "versionType": "git"
            },
            {
              "lessThan": "cccf96c49f61e47d9332d6a4d1c7fe9a2df44440",
              "status": "affected",
              "version": "558c303c9734af5a813739cd284879227f7297d2",
              "versionType": "git"
            },
            {
              "lessThan": "fd7e360845d331f542854d552469544182e61134",
              "status": "affected",
              "version": "558c303c9734af5a813739cd284879227f7297d2",
              "versionType": "git"
            },
            {
              "lessThan": "5dbe1f14359735fa50ba0dd4a496125b5bc7f422",
              "status": "affected",
              "version": "558c303c9734af5a813739cd284879227f7297d2",
              "versionType": "git"
            },
            {
              "lessThan": "fd51d47fcacec3ca027eb65d8c44853d3b6cea95",
              "status": "affected",
              "version": "558c303c9734af5a813739cd284879227f7297d2",
              "versionType": "git"
            },
            {
              "lessThan": "ad0c356cae164ed5dbd1f4cfd438e46faa5292cb",
              "status": "affected",
              "version": "558c303c9734af5a813739cd284879227f7297d2",
              "versionType": "git"
            },
            {
              "lessThan": "e3baa5d4b361276efeb87b20d8beced451a7dbd5",
              "status": "affected",
              "version": "558c303c9734af5a813739cd284879227f7297d2",
              "versionType": "git"
            },
            {
              "status": "affected",
              "version": "4dd8aae585a51a1d276911fe19096ad90144e9fe",
              "versionType": "git"
            },
            {
              "status": "affected",
              "version": "3e3904125fccd042fda24294624e8f66699fd06d",
              "versionType": "git"
            },
            {
              "status": "affected",
              "version": "c20d551744797000c4af993f7d59ef8c69732949",
              "versionType": "git"
            },
            {
              "status": "affected",
              "version": "9013fd4bc958b33c3b4d5a2eaf4ded9857600395",
              "versionType": "git"
            },
            {
              "status": "affected",
              "version": "0b2bf1b37b5ebd90e69e30d8c2d6e1cd0c1f37b4",
              "versionType": "git"
            },
            {
              "lessThan": "5.10.252",
              "status": "affected",
              "version": "5.10.105",
              "versionType": "semver"
            },
            {
              "lessThan": "5.15.202",
              "status": "affected",
              "version": "5.15.28",
              "versionType": "semver"
            },
            {
              "lessThan": "4.10",
              "status": "affected",
              "version": "4.9.310",
              "versionType": "semver"
            },
            {
              "lessThan": "4.15",
              "status": "affected",
              "version": "4.14.275",
              "versionType": "semver"
            },
            {
              "lessThan": "4.20",
              "status": "affected",
              "version": "4.19.236",
              "versionType": "semver"
            },
            {
              "lessThan": "5.5",
              "status": "affected",
              "version": "5.4.186",
              "versionType": "semver"
            },
            {
              "lessThan": "5.17",
              "status": "affected",
              "version": "5.16.14",
              "versionType": "semver"
            }
          ]
        },
        {
          "defaultStatus": "affected",
          "product": "Linux",
          "programFiles": [
            "arch/arm64/kernel/proton-pack.c"
          ],
          "repo": "https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git",
          "vendor": "Linux",
          "versions": [
            {
              "status": "affected",
              "version": "5.17"
            },
            {
              "lessThan": "5.17",
              "status": "unaffected",
              "version": "0",
              "versionType": "semver"
            },
            {
              "lessThanOrEqual": "5.10.*",
              "status": "unaffected",
              "version": "5.10.252",
              "versionType": "semver"
            },
            {
              "lessThanOrEqual": "5.15.*",
              "status": "unaffected",
              "version": "5.15.202",
              "versionType": "semver"
            },
            {
              "lessThanOrEqual": "6.1.*",
              "status": "unaffected",
              "version": "6.1.165",
              "versionType": "semver"
            },
            {
              "lessThanOrEqual": "6.6.*",
              "status": "unaffected",
              "version": "6.6.128",
              "versionType": "semver"
            },
            {
              "lessThanOrEqual": "6.12.*",
              "status": "unaffected",
              "version": "6.12.75",
              "versionType": "semver"
            },
            {
              "lessThanOrEqual": "6.18.*",
              "status": "unaffected",
              "version": "6.18.16",
              "versionType": "semver"
            },
            {
              "lessThanOrEqual": "6.19.*",
              "status": "unaffected",
              "version": "6.19.6",
              "versionType": "semver"
            },
            {
              "lessThanOrEqual": "*",
              "status": "unaffected",
              "version": "7.0",
              "versionType": "original_commit_for_fix"
            }
          ]
        }
      ],
      "cpeApplicability": [
        {
          "nodes": [
            {
              "cpeMatch": [
                {
                  "criteria": "cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*",
                  "versionEndExcluding": "5.10.252",
                  "versionStartIncluding": "5.10.105",
                  "vulnerable": true
                },
                {
                  "criteria": "cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*",
                  "versionEndExcluding": "5.15.202",
                  "versionStartIncluding": "5.15.28",
                  "vulnerable": true
                },
                {
                  "criteria": "cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*",
                  "versionEndExcluding": "6.1.165",
                  "versionStartIncluding": "5.17",
                  "vulnerable": true
                },
                {
                  "criteria": "cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*",
                  "versionEndExcluding": "6.6.128",
                  "versionStartIncluding": "5.17",
                  "vulnerable": true
                },
                {
                  "criteria": "cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*",
                  "versionEndExcluding": "6.12.75",
                  "versionStartIncluding": "5.17",
                  "vulnerable": true
                },
                {
                  "criteria": "cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*",
                  "versionEndExcluding": "6.18.16",
                  "versionStartIncluding": "5.17",
                  "vulnerable": true
                },
                {
                  "criteria": "cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*",
                  "versionEndExcluding": "6.19.6",
                  "versionStartIncluding": "5.17",
                  "vulnerable": true
                },
                {
                  "criteria": "cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*",
                  "versionEndExcluding": "7.0",
                  "versionStartIncluding": "5.17",
                  "vulnerable": true
                },
                {
                  "criteria": "cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*",
                  "versionStartIncluding": "4.9.310",
                  "vulnerable": true
                },
                {
                  "criteria": "cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*",
                  "versionStartIncluding": "4.14.275",
                  "vulnerable": true
                },
                {
                  "criteria": "cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*",
                  "versionStartIncluding": "4.19.236",
                  "vulnerable": true
                },
                {
                  "criteria": "cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*",
                  "versionStartIncluding": "5.4.186",
                  "vulnerable": true
                },
                {
                  "criteria": "cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*",
                  "versionStartIncluding": "5.16.14",
                  "vulnerable": true
                }
              ],
              "negate": false,
              "operator": "OR"
            }
          ]
        }
      ],
      "descriptions": [
        {
          "lang": "en",
          "value": "In the Linux kernel, the following vulnerability has been resolved:\n\narm64: Add support for TSV110 Spectre-BHB mitigation\n\nThe TSV110 processor is vulnerable to the Spectre-BHB (Branch History\nBuffer) attack, which can be exploited to leak information through\nbranch prediction side channels. This commit adds the MIDR of TSV110\nto the list for software mitigation."
        }
      ],
      "providerMetadata": {
        "dateUpdated": "2026-05-23T16:06:36.101Z",
        "orgId": "416baaa9-dc9f-4396-8d5f-8c081fb06d67",
        "shortName": "Linux"
      },
      "references": [
        {
          "url": "https://git.kernel.org/stable/c/598c11dd4f4a9de31d854fcb9702f54c1c70f0d0"
        },
        {
          "url": "https://git.kernel.org/stable/c/a8d0ad5d990b050a6db74218a34b5529085e16b8"
        },
        {
          "url": "https://git.kernel.org/stable/c/cccf96c49f61e47d9332d6a4d1c7fe9a2df44440"
        },
        {
          "url": "https://git.kernel.org/stable/c/fd7e360845d331f542854d552469544182e61134"
        },
        {
          "url": "https://git.kernel.org/stable/c/5dbe1f14359735fa50ba0dd4a496125b5bc7f422"
        },
        {
          "url": "https://git.kernel.org/stable/c/fd51d47fcacec3ca027eb65d8c44853d3b6cea95"
        },
        {
          "url": "https://git.kernel.org/stable/c/ad0c356cae164ed5dbd1f4cfd438e46faa5292cb"
        },
        {
          "url": "https://git.kernel.org/stable/c/e3baa5d4b361276efeb87b20d8beced451a7dbd5"
        }
      ],
      "title": "arm64: Add support for TSV110 Spectre-BHB mitigation",
      "x_generator": {
        "engine": "bippy-1.2.0"
      }
    }
  },
  "cveMetadata": {
    "assignerOrgId": "416baaa9-dc9f-4396-8d5f-8c081fb06d67",
    "assignerShortName": "Linux",
    "cveId": "CVE-2026-43261",
    "datePublished": "2026-05-06T11:28:48.823Z",
    "dateReserved": "2026-05-01T14:12:55.997Z",
    "dateUpdated": "2026-05-23T16:06:36.101Z",
    "state": "PUBLISHED"
  },
  "dataType": "CVE_RECORD",
  "dataVersion": "5.2"
}


Log in or create an account to share your comment.




Tags
Taxonomy of the tags.


Loading…

Loading…

Loading…

Sightings

Author Source Type Date

Nomenclature

  • Seen: The vulnerability was mentioned, discussed, or seen somewhere by the user.
  • Confirmed: The vulnerability is confirmed from an analyst perspective.
  • Published Proof of Concept: A public proof of concept is available for this vulnerability.
  • Exploited: This vulnerability was exploited and seen by the user reporting the sighting.
  • Patched: This vulnerability was successfully patched by the user reporting the sighting.
  • Not exploited: This vulnerability was not exploited or seen by the user reporting the sighting.
  • Not confirmed: The user expresses doubt about the veracity of the vulnerability.
  • Not patched: This vulnerability was not successfully patched by the user reporting the sighting.


Loading…

Loading…