Answer in brief
CVE-2026-64507 records a Unknown severity vulnerability in x86/bugs: Enable IBPB flush on BPF JIT allocation. The current sources do not mark it as known exploited. The current feed maps Linux/Linux (generic), Linux/Linux (generic). Check affected ranges and fixed versions before updating.
Analysis pending evidence review
HOL Guard separates source facts from reviewed analysis. See the methodology.
A CVSS score is not reported in the current record. The current sources do not mark it as known exploited. Treat this as a source-backed prioritization signal, not a statement about your environment.
Analysis status
Analysis pending evidence review
Factual feed record only; HOL analysis is not approved for indexing. Read the methodology.
The current feed maps Linux/Linux (generic), Linux/Linux (generic). Check affected ranges and fixed versions before updating.
| Package | Affected range | Fixed version |
|---|---|---|
| Linux/Linuxgeneric | >=57631054fae6dcc9c892ae6310b58bbb6f6e5048 <cb27f3bf915cc0f20fc0c48da9059304e39ebd35 || >=57631054fae6dcc9c892ae6310b58bbb6f6e5048 <9354248fc1c33a844ca1872761f6668b393e8c37 || >=57631054fae6dcc9c892ae6310b58bbb6f6e5048 <8a4c8af9ae67eb072d90d1b339f14d27a82bd2a1 || >=57631054fae6dcc9c892ae6310b58bbb6f6e5048 <52440e15d9628f8f239373c0f2e5e8f92feea2df || >=57631054fae6dcc9c892ae6310b58bbb6f6e5048 <a3af84b0fa00ead01fcd0e28b5d773ff25990a0d | cb27f3bf915cc0f20fc0c48da9059304e39ebd35, 9354248fc1c33a844ca1872761f6668b393e8c37, 8a4c8af9ae67eb072d90d1b339f14d27a82bd2a1, 52440e15d9628f8f239373c0f2e5e8f92feea2df, a3af84b0fa00ead01fcd0e28b5d773ff25990a0d |
| Linux/Linuxgeneric | 5.18 | Not reported |
Published upstream
Jul 25, 2026
Evidence: source:cvelist:source_dates:source-dates:recordSource modified
Aug 17, 2026
Evidence: source:cvelist:source_dates:source-dates:recordFirst seen by HOL
Aug 17, 2026
In the Linux kernel, the following vulnerability has been resolved: x86/bugs: Enable IBPB flush on BPF JIT allocation Enable hardening against JIT spraying when Spectre-v2 mitigations are in use. Specifically, issue an IBPB flush on BPF JIT memory reuse. Skip enabling the IBPB flush if the BPF dispatcher is already using a retpoline sequence. This hardening applies only when BPF-JIT is in use. Guard the enabling under CONFIG_BPF_JIT so that bugs.c still builds with CONFIG_BPF_JIT=n.
Quoted source text, attributed separately from HOL analysis.
Answer in brief
CVE-2026-64507 records a Unknown severity vulnerability in x86/bugs: Enable IBPB flush on BPF JIT allocation. The current sources do not mark it as known exploited. The current feed maps Linux/Linux (generic), Linux/Linux (generic). Check affected ranges and fixed versions before updating.
Analysis pending evidence review
HOL Guard separates source facts from reviewed analysis. See the methodology.
A CVSS score is not reported in the current record. The current sources do not mark it as known exploited. Treat this as a source-backed prioritization signal, not a statement about your environment.
Analysis status
Analysis pending evidence review
Factual feed record only; HOL analysis is not approved for indexing. Read the methodology.
The current feed maps Linux/Linux (generic), Linux/Linux (generic). Check affected ranges and fixed versions before updating.
| Package | Affected range | Fixed version |
|---|---|---|
| Linux/Linuxgeneric | >=57631054fae6dcc9c892ae6310b58bbb6f6e5048 <cb27f3bf915cc0f20fc0c48da9059304e39ebd35 || >=57631054fae6dcc9c892ae6310b58bbb6f6e5048 <9354248fc1c33a844ca1872761f6668b393e8c37 || >=57631054fae6dcc9c892ae6310b58bbb6f6e5048 <8a4c8af9ae67eb072d90d1b339f14d27a82bd2a1 || >=57631054fae6dcc9c892ae6310b58bbb6f6e5048 <52440e15d9628f8f239373c0f2e5e8f92feea2df || >=57631054fae6dcc9c892ae6310b58bbb6f6e5048 <a3af84b0fa00ead01fcd0e28b5d773ff25990a0d | cb27f3bf915cc0f20fc0c48da9059304e39ebd35, 9354248fc1c33a844ca1872761f6668b393e8c37, 8a4c8af9ae67eb072d90d1b339f14d27a82bd2a1, 52440e15d9628f8f239373c0f2e5e8f92feea2df, a3af84b0fa00ead01fcd0e28b5d773ff25990a0d |
| Linux/Linuxgeneric | 5.18 | Not reported |
Published upstream
Jul 25, 2026
Evidence: source:cvelist:source_dates:source-dates:recordSource modified
Aug 17, 2026
Evidence: source:cvelist:source_dates:source-dates:recordFirst seen by HOL
Aug 17, 2026
In the Linux kernel, the following vulnerability has been resolved: x86/bugs: Enable IBPB flush on BPF JIT allocation Enable hardening against JIT spraying when Spectre-v2 mitigations are in use. Specifically, issue an IBPB flush on BPF JIT memory reuse. Skip enabling the IBPB flush if the BPF dispatcher is already using a retpoline sequence. This hardening applies only when BPF-JIT is in use. Guard the enabling under CONFIG_BPF_JIT so that bugs.c still builds with CONFIG_BPF_JIT=n.
Quoted source text, attributed separately from HOL analysis.