importantSYS.SOURCE: GitHub• 2026-08-06T16:24:36Z
KVM/x86 Guest-to-Host Escape Vulnerability (CVE-2026-64561)
Zapscape (CVE-2026-64561) is a use-after-free vulnerability in KVM/x86's shadow MMU emulation that enables guest-to-host escape with root privileges. The proof-of-concept demonstrates exploitation via QEMU TCG, creating a root-owned file on the host system.
*** END OF TRANSMISSION ***