CVE-2026-46174 (GCVE-0-2026-46174)
Vulnerability from cvelistv5
Published
2026-05-28 09:36
Modified
2026-05-30 10:48
Summary
In the Linux kernel, the following vulnerability has been resolved: x86/CPU/AMD: Prevent improper isolation of shared resources in Zen2's op cache Make sure resources are not improperly shared in the op cache and cause instruction corruption this way.
Impacted products
Vendor Product Version
Linux Linux Version: f7f3dc00f61261cdc9ccd8b886f21bc4dffd6fd9
Version: f7f3dc00f61261cdc9ccd8b886f21bc4dffd6fd9
Version: f7f3dc00f61261cdc9ccd8b886f21bc4dffd6fd9
Version: f7f3dc00f61261cdc9ccd8b886f21bc4dffd6fd9
Version: f7f3dc00f61261cdc9ccd8b886f21bc4dffd6fd9
Version: f7f3dc00f61261cdc9ccd8b886f21bc4dffd6fd9
Version: f7f3dc00f61261cdc9ccd8b886f21bc4dffd6fd9
Version: f7f3dc00f61261cdc9ccd8b886f21bc4dffd6fd9
Version: 5abd1583e06b3963e5c9d915760367de86808b78
Version: 4ba461d426490b6ed7e8298c4d3b7a13aa5d2686
Version: 5a63725cd18fcee2af6ec46ccb856b64ad3077b4
Version: 3.16.58   
Version: 4.4.144   
Version: 4.9.102   
Create a notification for this product.
Show details on NVD website


{
  "containers": {
    "cna": {
      "affected": [
        {
          "defaultStatus": "unaffected",
          "product": "Linux",
          "programFiles": [
            "arch/x86/include/asm/msr-index.h",
            "arch/x86/kernel/cpu/amd.c",
            "tools/arch/x86/include/asm/msr-index.h"
          ],
          "repo": "https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git",
          "vendor": "Linux",
          "versions": [
            {
              "lessThan": "1e23b30a80b14e5764657401ee2cca030525ae8e",
              "status": "affected",
              "version": "f7f3dc00f61261cdc9ccd8b886f21bc4dffd6fd9",
              "versionType": "git"
            },
            {
              "lessThan": "f5bc3aef7df46eaaf423d7413ab8833f704ae576",
              "status": "affected",
              "version": "f7f3dc00f61261cdc9ccd8b886f21bc4dffd6fd9",
              "versionType": "git"
            },
            {
              "lessThan": "251497955f2314cd39d43191e81c6151dead4c7b",
              "status": "affected",
              "version": "f7f3dc00f61261cdc9ccd8b886f21bc4dffd6fd9",
              "versionType": "git"
            },
            {
              "lessThan": "ff6fc65b3bf73acc5ee71919154d830ad5431362",
              "status": "affected",
              "version": "f7f3dc00f61261cdc9ccd8b886f21bc4dffd6fd9",
              "versionType": "git"
            },
            {
              "lessThan": "9109489cc8c34e50d15575a3d1ff82af586bc1aa",
              "status": "affected",
              "version": "f7f3dc00f61261cdc9ccd8b886f21bc4dffd6fd9",
              "versionType": "git"
            },
            {
              "lessThan": "28f5ed477eef166d678d6966762cbc1de9b4f436",
              "status": "affected",
              "version": "f7f3dc00f61261cdc9ccd8b886f21bc4dffd6fd9",
              "versionType": "git"
            },
            {
              "lessThan": "1cd85a19748b2407830376a5cbae5c0f126016e5",
              "status": "affected",
              "version": "f7f3dc00f61261cdc9ccd8b886f21bc4dffd6fd9",
              "versionType": "git"
            },
            {
              "lessThan": "c21b90f77687075115d989e53a8ec5e2bb427ab1",
              "status": "affected",
              "version": "f7f3dc00f61261cdc9ccd8b886f21bc4dffd6fd9",
              "versionType": "git"
            },
            {
              "status": "affected",
              "version": "5abd1583e06b3963e5c9d915760367de86808b78",
              "versionType": "git"
            },
            {
              "status": "affected",
              "version": "4ba461d426490b6ed7e8298c4d3b7a13aa5d2686",
              "versionType": "git"
            },
            {
              "status": "affected",
              "version": "5a63725cd18fcee2af6ec46ccb856b64ad3077b4",
              "versionType": "git"
            },
            {
              "lessThan": "3.17",
              "status": "affected",
              "version": "3.16.58",
              "versionType": "semver"
            },
            {
              "lessThan": "4.5",
              "status": "affected",
              "version": "4.4.144",
              "versionType": "semver"
            },
            {
              "lessThan": "4.10",
              "status": "affected",
              "version": "4.9.102",
              "versionType": "semver"
            }
          ]
        },
        {
          "defaultStatus": "affected",
          "product": "Linux",
          "programFiles": [
            "arch/x86/include/asm/msr-index.h",
            "arch/x86/kernel/cpu/amd.c",
            "tools/arch/x86/include/asm/msr-index.h"
          ],
          "repo": "https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git",
          "vendor": "Linux",
          "versions": [
            {
              "status": "affected",
              "version": "4.14"
            },
            {
              "lessThan": "4.14",
              "status": "unaffected",
              "version": "0",
              "versionType": "semver"
            },
            {
              "lessThanOrEqual": "5.10.*",
              "status": "unaffected",
              "version": "5.10.256",
              "versionType": "semver"
            },
            {
              "lessThanOrEqual": "5.15.*",
              "status": "unaffected",
              "version": "5.15.207",
              "versionType": "semver"
            },
            {
              "lessThanOrEqual": "6.1.*",
              "status": "unaffected",
              "version": "6.1.173",
              "versionType": "semver"
            },
            {
              "lessThanOrEqual": "6.6.*",
              "status": "unaffected",
              "version": "6.6.139",
              "versionType": "semver"
            },
            {
              "lessThanOrEqual": "6.12.*",
              "status": "unaffected",
              "version": "6.12.88",
              "versionType": "semver"
            },
            {
              "lessThanOrEqual": "6.18.*",
              "status": "unaffected",
              "version": "6.18.30",
              "versionType": "semver"
            },
            {
              "lessThanOrEqual": "7.0.*",
              "status": "unaffected",
              "version": "7.0.7",
              "versionType": "semver"
            },
            {
              "lessThanOrEqual": "*",
              "status": "unaffected",
              "version": "7.1-rc4",
              "versionType": "original_commit_for_fix"
            }
          ]
        }
      ],
      "cpeApplicability": [
        {
          "nodes": [
            {
              "cpeMatch": [
                {
                  "criteria": "cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*",
                  "versionEndExcluding": "5.10.256",
                  "versionStartIncluding": "4.14",
                  "vulnerable": true
                },
                {
                  "criteria": "cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*",
                  "versionEndExcluding": "5.15.207",
                  "versionStartIncluding": "4.14",
                  "vulnerable": true
                },
                {
                  "criteria": "cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*",
                  "versionEndExcluding": "6.1.173",
                  "versionStartIncluding": "4.14",
                  "vulnerable": true
                },
                {
                  "criteria": "cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*",
                  "versionEndExcluding": "6.6.139",
                  "versionStartIncluding": "4.14",
                  "vulnerable": true
                },
                {
                  "criteria": "cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*",
                  "versionEndExcluding": "6.12.88",
                  "versionStartIncluding": "4.14",
                  "vulnerable": true
                },
                {
                  "criteria": "cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*",
                  "versionEndExcluding": "6.18.30",
                  "versionStartIncluding": "4.14",
                  "vulnerable": true
                },
                {
                  "criteria": "cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*",
                  "versionEndExcluding": "7.0.7",
                  "versionStartIncluding": "4.14",
                  "vulnerable": true
                },
                {
                  "criteria": "cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*",
                  "versionEndExcluding": "7.1-rc4",
                  "versionStartIncluding": "4.14",
                  "vulnerable": true
                },
                {
                  "criteria": "cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*",
                  "versionStartIncluding": "3.16.58",
                  "vulnerable": true
                },
                {
                  "criteria": "cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*",
                  "versionStartIncluding": "4.4.144",
                  "vulnerable": true
                },
                {
                  "criteria": "cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*",
                  "versionStartIncluding": "4.9.102",
                  "vulnerable": true
                }
              ],
              "negate": false,
              "operator": "OR"
            }
          ]
        }
      ],
      "descriptions": [
        {
          "lang": "en",
          "value": "In the Linux kernel, the following vulnerability has been resolved:\n\nx86/CPU/AMD: Prevent improper isolation of shared resources in Zen2\u0027s op cache\n\nMake sure resources are not improperly shared in the op cache and\ncause instruction corruption this way."
        }
      ],
      "metrics": [
        {
          "cvssV3_1": {
            "baseScore": 8.8,
            "baseSeverity": "HIGH",
            "vectorString": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:C/C:H/I:H/A:H",
            "version": "3.1"
          }
        }
      ],
      "providerMetadata": {
        "dateUpdated": "2026-05-30T10:48:38.525Z",
        "orgId": "416baaa9-dc9f-4396-8d5f-8c081fb06d67",
        "shortName": "Linux"
      },
      "references": [
        {
          "url": "https://git.kernel.org/stable/c/1e23b30a80b14e5764657401ee2cca030525ae8e"
        },
        {
          "url": "https://git.kernel.org/stable/c/f5bc3aef7df46eaaf423d7413ab8833f704ae576"
        },
        {
          "url": "https://git.kernel.org/stable/c/251497955f2314cd39d43191e81c6151dead4c7b"
        },
        {
          "url": "https://git.kernel.org/stable/c/ff6fc65b3bf73acc5ee71919154d830ad5431362"
        },
        {
          "url": "https://git.kernel.org/stable/c/9109489cc8c34e50d15575a3d1ff82af586bc1aa"
        },
        {
          "url": "https://git.kernel.org/stable/c/28f5ed477eef166d678d6966762cbc1de9b4f436"
        },
        {
          "url": "https://git.kernel.org/stable/c/1cd85a19748b2407830376a5cbae5c0f126016e5"
        },
        {
          "url": "https://git.kernel.org/stable/c/c21b90f77687075115d989e53a8ec5e2bb427ab1"
        }
      ],
      "title": "x86/CPU/AMD: Prevent improper isolation of shared resources in Zen2\u0027s op cache",
      "x_generator": {
        "engine": "bippy-1.2.0"
      }
    }
  },
  "cveMetadata": {
    "assignerOrgId": "416baaa9-dc9f-4396-8d5f-8c081fb06d67",
    "assignerShortName": "Linux",
    "cveId": "CVE-2026-46174",
    "datePublished": "2026-05-28T09:36:28.703Z",
    "dateReserved": "2026-05-13T15:03:33.103Z",
    "dateUpdated": "2026-05-30T10:48:38.525Z",
    "state": "PUBLISHED"
  },
  "dataType": "CVE_RECORD",
  "dataVersion": "5.2"
}


Log in or create an account to share your comment.




Tags
Taxonomy of the tags.


Loading…

Loading…

Loading…

Sightings

Author Source Type Date

Nomenclature

  • Seen: The vulnerability was mentioned, discussed, or seen somewhere by the user.
  • Confirmed: The vulnerability is confirmed from an analyst perspective.
  • Published Proof of Concept: A public proof of concept is available for this vulnerability.
  • Exploited: This vulnerability was exploited and seen by the user reporting the sighting.
  • Patched: This vulnerability was successfully patched by the user reporting the sighting.
  • Not exploited: This vulnerability was not exploited or seen by the user reporting the sighting.
  • Not confirmed: The user expresses doubt about the veracity of the vulnerability.
  • Not patched: This vulnerability was not successfully patched by the user reporting the sighting.


Loading…

Loading…