arm64: Add support for TSV110 Spectre-BHB mitigation
Summary
| CVE | CVE-2026-43261 |
|---|---|
| State | PUBLISHED |
| Assigner | Linux |
| Source Priority | CVE Program / NVD first with legacy fallback |
| Published | 2026-05-06 12:16:47 UTC |
| Updated | 2026-05-08 20:37:34 UTC |
| Description | In the Linux kernel, the following vulnerability has been resolved: arm64: Add support for TSV110 Spectre-BHB mitigation The TSV110 processor is vulnerable to the Spectre-BHB (Branch History Buffer) attack, which can be exploited to leak information through branch prediction side channels. This commit adds the MIDR of TSV110 to the list for software mitigation. |
Risk And Classification
Primary CVSS: v3.1 5.5 MEDIUM from [email protected]
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
Problem Types: NVD-CWE-noinfo
CVSS v3.1 Breakdown
Attack Vector
LocalAttack Complexity
LowPrivileges Required
LowUser Interaction
NoneScope
UnchangedConfidentiality
NoneIntegrity
NoneAvailability
HighCVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
NVD Known Affected Configurations (CPE 2.3)
| Type | Vendor | Product | Version | Update | Edition | Language |
|---|---|---|---|---|---|---|
| Operating System | Linux | Linux Kernel | All | All | All | All |
Vendor Declared Affected Products
| Source | Vendor | Product | Version | Platforms |
|---|---|---|---|---|
| CNA | Linux | Linux | affected e192c8baa69ac8a5585d61ac535aa1e5eb795e80 598c11dd4f4a9de31d854fcb9702f54c1c70f0d0 git | Not specified |
| CNA | Linux | Linux | affected 4bbfd0c280254b273c564767021bb9b0f945148e a8d0ad5d990b050a6db74218a34b5529085e16b8 git | Not specified |
| CNA | Linux | Linux | affected 558c303c9734af5a813739cd284879227f7297d2 cccf96c49f61e47d9332d6a4d1c7fe9a2df44440 git | Not specified |
| CNA | Linux | Linux | affected 558c303c9734af5a813739cd284879227f7297d2 fd7e360845d331f542854d552469544182e61134 git | Not specified |
| CNA | Linux | Linux | affected 558c303c9734af5a813739cd284879227f7297d2 5dbe1f14359735fa50ba0dd4a496125b5bc7f422 git | Not specified |
| CNA | Linux | Linux | affected 558c303c9734af5a813739cd284879227f7297d2 fd51d47fcacec3ca027eb65d8c44853d3b6cea95 git | Not specified |
| CNA | Linux | Linux | affected 558c303c9734af5a813739cd284879227f7297d2 ad0c356cae164ed5dbd1f4cfd438e46faa5292cb git | Not specified |
| CNA | Linux | Linux | affected 558c303c9734af5a813739cd284879227f7297d2 e3baa5d4b361276efeb87b20d8beced451a7dbd5 git | Not specified |
| CNA | Linux | Linux | affected 4dd8aae585a51a1d276911fe19096ad90144e9fe git | Not specified |
| CNA | Linux | Linux | affected 3e3904125fccd042fda24294624e8f66699fd06d git | Not specified |
| CNA | Linux | Linux | affected c20d551744797000c4af993f7d59ef8c69732949 git | Not specified |
| CNA | Linux | Linux | affected 9013fd4bc958b33c3b4d5a2eaf4ded9857600395 git | Not specified |
| CNA | Linux | Linux | affected 0b2bf1b37b5ebd90e69e30d8c2d6e1cd0c1f37b4 git | Not specified |
| CNA | Linux | Linux | affected 5.17 | Not specified |
| CNA | Linux | Linux | unaffected 5.17 semver | Not specified |
| CNA | Linux | Linux | unaffected 5.10.252 5.10.* semver | Not specified |
| CNA | Linux | Linux | unaffected 5.15.202 5.15.* semver | Not specified |
| CNA | Linux | Linux | unaffected 6.1.165 6.1.* semver | Not specified |
| CNA | Linux | Linux | unaffected 6.6.128 6.6.* semver | Not specified |
| CNA | Linux | Linux | unaffected 6.12.75 6.12.* semver | Not specified |
| CNA | Linux | Linux | unaffected 6.18.16 6.18.* semver | Not specified |
| CNA | Linux | Linux | unaffected 6.19.6 6.19.* semver | Not specified |
| CNA | Linux | Linux | unaffected 7.0 * original_commit_for_fix | Not specified |
References
| Reference | Source | Link | Tags |
|---|---|---|---|
| git.kernel.org/stable/c/a8d0ad5d990b050a6db74218a34b5529085e16b8 | 416baaa9-dc9f-4396-8d5f-8c081fb06d67 | git.kernel.org | Patch |
| git.kernel.org/stable/c/5dbe1f14359735fa50ba0dd4a496125b5bc7f422 | 416baaa9-dc9f-4396-8d5f-8c081fb06d67 | git.kernel.org | Patch |
| git.kernel.org/stable/c/ad0c356cae164ed5dbd1f4cfd438e46faa5292cb | 416baaa9-dc9f-4396-8d5f-8c081fb06d67 | git.kernel.org | Patch |
| git.kernel.org/stable/c/e3baa5d4b361276efeb87b20d8beced451a7dbd5 | 416baaa9-dc9f-4396-8d5f-8c081fb06d67 | git.kernel.org | Patch |
| git.kernel.org/stable/c/fd51d47fcacec3ca027eb65d8c44853d3b6cea95 | 416baaa9-dc9f-4396-8d5f-8c081fb06d67 | git.kernel.org | Patch |
| git.kernel.org/stable/c/cccf96c49f61e47d9332d6a4d1c7fe9a2df44440 | 416baaa9-dc9f-4396-8d5f-8c081fb06d67 | git.kernel.org | Patch |
| git.kernel.org/stable/c/598c11dd4f4a9de31d854fcb9702f54c1c70f0d0 | 416baaa9-dc9f-4396-8d5f-8c081fb06d67 | git.kernel.org | Patch |
| git.kernel.org/stable/c/fd7e360845d331f542854d552469544182e61134 | 416baaa9-dc9f-4396-8d5f-8c081fb06d67 | git.kernel.org | Patch |
| CVE Program record | CVE.ORG | www.cve.org | canonical |
| NVD vulnerability detail | NVD | nvd.nist.gov | canonical, analysis |
No vendor comments have been submitted for this CVE.
There are currently no legacy QID mappings associated with this CVE.