Answer in brief
CVE-2026-64082 records a High severity (CVSS 7.8) vulnerability in riscv: Fix register corruption from uninitialized cregs on error. The current sources do not mark it as known exploited. The current feed maps Linux/Linux (generic), Linux/Linux (generic), Linux/Linux (generic). Check affected ranges and fixed versions before updating.
Analysis pending evidence review
HOL Guard separates source facts from reviewed analysis. See the methodology.
CVSS is 7.8. The current sources do not mark it as known exploited. Treat this as a source-backed prioritization signal, not a statement about your environment.
Analysis status
Analysis pending evidence review
Factual feed record only; HOL analysis is not approved for indexing. Read the methodology.
The current feed maps Linux/Linux (generic), Linux/Linux (generic), Linux/Linux (generic). Check affected ranges and fixed versions before updating.
| Product | Affected versions | Fixed versions |
|---|---|---|
| cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:* | Not reported | Not reported |
| cpe:2.3:o:linux:linux_kernel:7.1:rc1:*:*:*:*:*:* | Not reported | Not reported |
| cpe:2.3:o:linux:linux_kernel:7.1:rc2:*:*:*:*:*:* | Not reported | Not reported |
| cpe:2.3:o:linux:linux_kernel:7.1:rc3:*:*:*:*:*:* | Not reported | Not reported |
| Package | Affected range | Fixed version |
|---|---|---|
| Linux/Linuxgeneric | >=7383ee05314be58f8f9f018ee0ac53bef3808aea <9e020156833f1ad0d425a1e3d85b65639f1c1c50 || >=7383ee05314be58f8f9f018ee0ac53bef3808aea <6ebcbb53fc9bc30843054ed99fd60b8e542628f4 | 9e020156833f1ad0d425a1e3d85b65639f1c1c50, 6ebcbb53fc9bc30843054ed99fd60b8e542628f4 |
| Linux/Linuxgeneric | 5.19 | Not reported |
| Linux/Linuxgeneric | >=7383ee05314be58f8f9f018ee0ac53bef3808aea <f2d88b0d7aebfa4643fc58bbae57210c6daff9c6 || >=7383ee05314be58f8f9f018ee0ac53bef3808aea <66dedb6028c3df6c6a3372dd935b823917e150d5 || >=7383ee05314be58f8f9f018ee0ac53bef3808aea <2a7d1daf2674fe7d5b1cc99a4e3b5f0f72d5958f || >=7383ee05314be58f8f9f018ee0ac53bef3808aea <0599aa23734c48de9bce36d043a9ec90c23945a1 || >=7383ee05314be58f8f9f018ee0ac53bef3808aea <9e020156833f1ad0d425a1e3d85b65639f1c1c50 || >=7383ee05314be58f8f9f018ee0ac53bef3808aea <6ebcbb53fc9bc30843054ed99fd60b8e542628f4 | f2d88b0d7aebfa4643fc58bbae57210c6daff9c6, 66dedb6028c3df6c6a3372dd935b823917e150d5, 2a7d1daf2674fe7d5b1cc99a4e3b5f0f72d5958f, 0599aa23734c48de9bce36d043a9ec90c23945a1, 9e020156833f1ad0d425a1e3d85b65639f1c1c50, 6ebcbb53fc9bc30843054ed99fd60b8e542628f4 |
Published upstream
Jul 19, 2026
Evidence: source:cvelist:source_dates:source-dates:recordSource modified
Sep 3, 2026
Evidence: source:cvelist:source_dates:source-dates:recordFirst seen by HOL
Aug 5, 2026
In the Linux kernel, the following vulnerability has been resolved: riscv: Fix register corruption from uninitialized cregs on error compat_riscv_gpr_set() calls cregs_to_regs() unconditionally, even when user_regset_copyin() fails. Since cregs is an uninitialized stack variable, a copyin failure causes uninitialized stack data to be written into the target task's pt_regs, corrupting its register state and potentially leaking kernel stack contents. compat_restore_sigcontext() has the same issue: it calls cregs_to_regs() even when __copy_from_user() fails, leading to the same corruption of the signal-returning task's register state on error. Only call cregs_to_regs() when the user copy succeeds.
Quoted source text, attributed separately from HOL analysis.