Kernel Security
The latest Kernel Security coverage — news, analysis, and updates from the WindowsNews.AI desk.
Update WSL 2 and Docker Now: Microsoft Warns of Linux ebtables Race (CVE-2026-64076)
A newly disclosed Linux kernel vulnerability, CVE-2026-64076, has triggered a Microsoft security advisory urging all Windows Subsystem for Linux 2 (WSL 2) and Docker Desktop users to update their...
CVE-2026-64154: A Linux Qualcomm GPU bug gets a CVE — here’s what Windows users need to know
The Linux kernel project has published a new CVE for a reference leak in the Qualcomm Adreno A6xx GPU driver, but Windows users — even those on Snapdragon-powered Arm devices — can safely ignore...
New Linux LM90 Driver Flaw: What Windows and WSL Administrators Should Do Right Now
On July 19, 2026, CVE-2026-64038 landed in the National Vulnerability Database, detailing a use-after-free race condition in the Linux kernel’s lm90 hardware-monitoring driver. The bug can corrupt...
A Zero-Length I/O Request Just Became a Critical Linux Kernel Vuln—Here’s What to Patch
On July 19, 2026, kernel.org disclosed CVE-2026-63940, a critical flaw in the Linux kernel’s KVM handling for AMD Secure Encrypted Virtualization. The vulnerability—a failure to reject Port I/O...
CVE-2026-63794: Linux KVM Host Bug Exposes AMD SEV-Protected Windows VMs to Memory Overflow
A newly disclosed vulnerability in the Linux kernel’s KVM hypervisor code can lead to a buffer overflow on AMD-powered hosts that use Secure Encrypted Virtualization (SEV), potentially breaking the...
CVE-2026-63807: Patch Your Linux KVM Hosts to Stop Guest-Triggered Crashes
Published on July 19, 2026, a vulnerability in the Linux KVM hypervisor (CVE-2026-63807) can be exploited by a virtual machine guest to crash the entire physical host. The flaw lies in the shadow...
A 15-Year-Old Bug Lets a Guest VM Crash Your KVM Host—Patch Now
A vulnerability that has been hiding in the Linux kernel’s KVM hypervisor since 2009 can allow any guest virtual machine to instantly crash the entire physical host. Disclosed on July 19, 2026 as...
Rust Becomes Mandatory for Some New Linux Kernel Drivers as Experiment Ends
Greg Kroah-Hartman, the stable kernel maintainer for Linux, delivered a definitive message at Open Source Summit India in Mumbai on July 15, 2026: Rust is no longer an experiment in the kernel...
Microsoft Fixes Use-After-Free Kernel Bug (CVE-2026-50393) in Windows 11, Server 2025 — Here’s How to Patch
Microsoft on July 14, 2026, released security updates that patch a high-severity privilege escalation vulnerability in the Windows kernel. The flaw, tracked as CVE-2026-50393, could allow a...
Patch Alert: CVE-2026-53359 KVM Use-After-Free Allows Guest-to-Host Escape – What It Means for Windows Users
A critical vulnerability in the Linux kernel’s KVM hypervisor, made public on July 4, 2026, allows any virtual machine guest to crash the host system and, in worst-case scenarios, achieve full code...
Riot's Vanguard anti-cheat goes on-demand, requiring TPM attestation on Windows 11 25H2.
Riot Games is adding an on-demand mode for its Vanguard anti-cheat software, allowing League of Legends and VALORANT players to run the kernel-level driver only while playing—if their Windows 11...
CVE-2026-46301: Linux Kernel's spi-topcliff-pch Driver Hit by Critical DMA Use-After-Free Flaw
A major Linux kernel vulnerability, CVE-2026-46301, was disclosed on June 8, 2026, that could allow local attackers to escalate privileges or cause denial of service. The flaw resides in the...