CVE-2026-31483 PUBLISHED

s390/syscalls: Add spectre boundary for syscall dispatch table

Assigner: Linux
Reserved: 09.03.2026 Published: 22.04.2026 Updated: 22.04.2026

In the Linux kernel, the following vulnerability has been resolved:

s390/syscalls: Add spectre boundary for syscall dispatch table

The s390 syscall number is directly controlled by userspace, but does not have an array_index_nospec() boundary to prevent access past the syscall function pointer tables.

Product Status

Vendor Linux
Product Linux
Versions Default: unaffected
  • affected from 56e62a73702836017564eaacd5212e4d0fa1c01d to 3c3b97064764899c39a0abbd35a6caa031e70333 (excl.)
  • affected from 56e62a73702836017564eaacd5212e4d0fa1c01d to 1cb9c7bc9025c637564fabc7fcc3c9343949e310 (excl.)
  • affected from 56e62a73702836017564eaacd5212e4d0fa1c01d to 7a5260fbc6e79a1595328ec5c6aa3f937504a1f0 (excl.)
  • affected from 56e62a73702836017564eaacd5212e4d0fa1c01d to f8c444b918d639e1f9a621ee20fe481c1d10dfc4 (excl.)
  • affected from 56e62a73702836017564eaacd5212e4d0fa1c01d to 87776f02449e3bded95b2ccbd6b012e9ae64e6f3 (excl.)
  • affected from 56e62a73702836017564eaacd5212e4d0fa1c01d to 4d05dd18d867d58c6952a3bc260d244899da7256 (excl.)
  • affected from 56e62a73702836017564eaacd5212e4d0fa1c01d to 48b8814e25d073dd84daf990a879a820bad2bcbd (excl.)
Vendor Linux
Product Linux
Versions Default: affected
  • Version 5.12 is affected
  • unaffected from 0 to 5.12 (excl.)
  • unaffected from 5.15.203 to 5.15.* (incl.)
  • unaffected from 6.1.168 to 6.1.* (incl.)
  • unaffected from 6.6.131 to 6.6.* (incl.)
  • unaffected from 6.12.80 to 6.12.* (incl.)
  • unaffected from 6.18.21 to 6.18.* (incl.)
  • unaffected from 6.19.11 to 6.19.* (incl.)
  • unaffected from 7.0 to * (incl.)

References