National Cyber Warfare Foundation (NCWF)

New Zapscape KVM Flaw Could Let Privileged L1 Guest Code Escape to Linux Hosts


0 user ratings
2026-08-10 10:21:59
milo
Developers , Blue Team (CND) , Attacks
Zapscape, a new Linux kernel vulnerability, could allow an attacker with kernel privileges inside an L1 guest virtual machine (VM) to escape KVM isolation and execute code on the host. The risk applies when nested virtualization is exposed to untrusted guests.

The flaw is tracked as CVE-2026-64561 and affects KVM/x86's shadow memory management unit (MMU), which manages shadow page



Source: TheHackerNews
Source Link: https://thehackernews.com/2026/08/new-zapscape-kvm-flaw-could-let.html


Comments
new comment
Nobody has commented yet. Will you be the first?
 
Forum
Developers
Blue Team (CND)
Attacks



Copyright 2012 through 2026 - National Cyber Warfare Foundation - All rights reserved worldwide.