CVE-2026-79602

A guest with a PCI device assigned that has at least a BAR on the IO port space can trigger a BUG() in Xen.

  • Published Sep 8, 2026
  • CVSS 8.8 high
  • 0.1% chance of exploitation in the next 30 days (EPSS)

Affected software

CVE-2026-79602 at the National Vulnerability Database