CVE-2026-68480
Description
In the Linux kernel, the following vulnerability has been resolved: x86/bugs: Make Safe-RET robust against interrupt injection An attacker injecting interrupts while the Safe-RET mitigation executes on machines affected by SRSO can neutralize the safe return sequence, potentially leading to data leakage through speculative execution. Fixup register state as if the Safe-RET sequence executed successfully by "emulating" it, in a manner of speaking, and avoid executing a RET instruction after returning from the interrupt.
Predictions
Heuristic predictions, AS-IS, for prioritization only.
Mitigations
No mitigations published for this CVE yet.
The vendor-content worker queues fetches as references arrive (check back in a few minutes). Or — if you've already worked around this in production — publish your fix to the community-verified tier.
Propose a mitigation on Community Mitigations published via the community go through AI scoring + 2 human reviewers + 7-day silent objection window before landing here withsource_tier=community-verified.
OS impact
SUSE Affected 1 release
| Version | Status | Fixed in |
|---|---|---|
| — | Affected | — |
Debian Mixed 5 releases
| Version | Status | Fixed in |
|---|---|---|
| trixie | Affected | — |
| sid | Fixed | 7.1.7-1 |
| forky | Affected | — |
| bullseye | Affected | — |
| bookworm | Affected | — |
References
- https://git.kernel.org/stable/c/608c8f5dccaaf8b8d2b28c0fbdd439d144be62b0
- https://git.kernel.org/stable/c/61649a2d61cb0dbc673f0f232f0f0c298bf50442
- https://git.kernel.org/stable/c/95b08cdd603fe79d2e9d5212fbb13d577c835f4f
- https://git.kernel.org/stable/c/9c0b8105e919be5208c81d5516a194a28c58fe1e
- https://git.kernel.org/stable/c/9de1a49e8f1fbf7c372902573a27a97d4ab4d0af
- https://git.kernel.org/stable/c/bfe7f9993467ba431b2731437949ac1e2634e771
- https://security-tracker.debian.org/tracker/CVE-2026-68480
- https://git.kernel.org/stable/c/52db77a13be224e09eb4ba6b4252ae8ab9085c2c
- https://git.kernel.org/stable/c/6703dba1d14cbd6647cd1ccfa3a3fa94b64dd096
- https://git.kernel.org/stable/c/d0208e08d64d99383e09852a76cc3038c5a4c3ab
- https://git.kernel.org/stable/c/dfefa3c51370f84acb643cddf98bb42c885d0483
- https://git.kernel.org/stable/c/e262f28a69ae9e0791248f93b0173c1d1f3e1d5d
- https://www.suse.com/security/cve/CVE-2026-68480.html
Community-verified mitigations for this CVE will appear above when contributors publish them.
Verify integrity in audit chain (admin only). AS-IS.