CVE-2026-80552
HIGH
Published Aug 26, 2026
Modified Aug 27, 2026
Description
In the Linux kernel, the following vulnerability has been resolved: s390/vfio_ccw: Ensure index for read/write regions are within range The introduction of the capability chain rightly clamped the region indexes to the range of the capabilities itself, but neglected to do so for the existing read/write regions which should also be enforced.
Is your site exposed to CVE-2026-80552?
Run a free security scan — no signup, results in seconds.
CVSS v3.1 Score
8.8
HIGH
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:C/C:H/I:H/A:H
EPSS — Exploit Prediction
0.0013
Probability of exploitation
0.03%
Percentile rank
EPSS estimates the probability that this vulnerability will be exploited in the wild within the next 30 days. A higher score means more likely to be exploited.
References
Other References
https://git.kernel.org/stable/c/3acbedf5c0b8e0971f0de423c05cc02bbf6ddb99
https://git.kernel.org/stable/c/649badf3a2fd8929e40198603a2cb21b74c21700
https://git.kernel.org/stable/c/79ea5e0c4c8a9842ae85f45062d947b3297dfc07
https://git.kernel.org/stable/c/988d9b5be3c2c4baf9457ce8e11b477e13eb9fcf
https://git.kernel.org/stable/c/9f5f9a78fedc45bc29d6a0a64e3a3472361afae5
https://git.kernel.org/stable/c/d3b1e38404b22df5a1f93019f2bb656feaad5ae3
https://git.kernel.org/stable/c/d597fa1273802941c7801202135976fecc29672b
Frequently Asked Questions
What is CVE-2026-80552? +
In the Linux kernel, the following vulnerability has been resolved:
s390/vfio_ccw: Ensure index for read/write regions are within range
The introduction of the capability chain rightly clamped the
region indexes to the range of the capabilities itself, but
neglected to do so for the existing read/write regions which
should also be enforced. It has a CVSS v3.1 base score of 8.8 (HIGH).
How severe is CVE-2026-80552? +
CVE-2026-80552 has a CVSS v3.1 score of 8.8 out of 10, rated HIGH. This is a high-severity vulnerability that should be prioritized for patching. The EPSS score is 0.0013, placing it in the 0th percentile for exploitation probability.
How do I check if I'm vulnerable to CVE-2026-80552? +
You can use Secably's free Website Scanner to check your website for known vulnerabilities. For infrastructure scanning, use the Port Scanner to identify exposed services that may be affected. Check the vendor advisories linked above for specific patch and version information.