{"id":"CVE-2026-68480","summary":"x86/bugs: Make Safe-RET robust against interrupt injection","details":"In the Linux kernel, the following vulnerability has been resolved:\n\nx86/bugs: Make Safe-RET robust against interrupt injection\n\nAn attacker injecting interrupts while the Safe-RET mitigation executes\non machines affected by SRSO can neutralize the safe return sequence,\npotentially leading to data leakage through speculative execution.\n\nFixup register state as if the Safe-RET sequence executed successfully\nby \"emulating\" it, in a manner of speaking, and avoid executing a RET\ninstruction after returning from the interrupt.","modified":"2026-08-11T03:32:42.032757323Z","published":"2026-08-06T17:36:43.654Z","related":["openSUSE-SU-2026:11476-1"],"database_specific":{"cna_assigner":"Linux","osv_generated_from":"https://github.com/CVEProject/cvelistV5/tree/main/cves/2026/68xxx/CVE-2026-68480.json"},"references":[{"type":"WEB","url":"https://git.kernel.org/stable/c/52db77a13be224e09eb4ba6b4252ae8ab9085c2c"},{"type":"WEB","url":"https://git.kernel.org/stable/c/61649a2d61cb0dbc673f0f232f0f0c298bf50442"},{"type":"WEB","url":"https://git.kernel.org/stable/c/6703dba1d14cbd6647cd1ccfa3a3fa94b64dd096"},{"type":"WEB","url":"https://git.kernel.org/stable/c/bfe7f9993467ba431b2731437949ac1e2634e771"},{"type":"WEB","url":"https://git.kernel.org/stable/c/d0208e08d64d99383e09852a76cc3038c5a4c3ab"},{"type":"WEB","url":"https://git.kernel.org/stable/c/dfefa3c51370f84acb643cddf98bb42c885d0483"},{"type":"WEB","url":"https://git.kernel.org/stable/c/e262f28a69ae9e0791248f93b0173c1d1f3e1d5d"},{"type":"WEB","url":"https://people.csail.mit.edu/mengjia/data/2026.USENIX.TONTOU.pdf"},{"type":"ADVISORY","url":"https://github.com/CVEProject/cvelistV5/tree/main/cves/2026/68xxx/CVE-2026-68480.json"},{"type":"ADVISORY","url":"https://nvd.nist.gov/vuln/detail/CVE-2026-68480"},{"type":"PACKAGE","url":"https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git"}],"affected":[{"package":{"name":"Kernel","ecosystem":"Linux"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"1da177e4c3f41524e886b7f1b8a0c1fc7321cac2"},{"fixed":"dfefa3c51370f84acb643cddf98bb42c885d0483"},{"fixed":"52db77a13be224e09eb4ba6b4252ae8ab9085c2c"},{"fixed":"d0208e08d64d99383e09852a76cc3038c5a4c3ab"},{"fixed":"6703dba1d14cbd6647cd1ccfa3a3fa94b64dd096"},{"fixed":"e262f28a69ae9e0791248f93b0173c1d1f3e1d5d"},{"fixed":"bfe7f9993467ba431b2731437949ac1e2634e771"},{"fixed":"61649a2d61cb0dbc673f0f232f0f0c298bf50442"}]},{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"5.10.264"},{"fixed":"5.15.215"},{"fixed":"6.1.182"},{"fixed":"6.6.150"},{"fixed":"6.12.102"},{"fixed":"6.18.43"},{"fixed":"7.1.7"}]}],"database_specific":{"source":"https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2026-68480.json"}},{"package":{"name":"Kernel","ecosystem":"Linux"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"5.11.0"},{"fixed":"5.15.215"}]},{"type":"ECOSYSTEM","events":[{"introduced":"5.16.0"},{"fixed":"6.1.182"}]},{"type":"ECOSYSTEM","events":[{"introduced":"6.2.0"},{"fixed":"6.6.150"}]},{"type":"ECOSYSTEM","events":[{"introduced":"6.7.0"},{"fixed":"6.12.102"}]},{"type":"ECOSYSTEM","events":[{"introduced":"6.13.0"},{"fixed":"6.18.43"}]},{"type":"ECOSYSTEM","events":[{"introduced":"6.19.0"},{"fixed":"7.1.7"}]}],"database_specific":{"source":"https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2026-68480.json"}}],"schema_version":"1.8.0"}