CVE-2026-68451 is a vulnerability in Linux Kernel
Published on August 13, 2026
s390/zcrypt: Validate length for CCA ECC private key requests
In the Linux kernel, the following vulnerability has been resolved:
s390/zcrypt: Validate length for CCA ECC private key requests
cca_ecc2protkey() derives the copy length for the CPRB parameter
block directly from the length field in the key token. Reject the
request early if the token length exceeds the available space in the
parameter block.
Products Associated with CVE-2026-68451
Want to know whenever a new CVE is published for Linux Kernel? stack.watch will email you.
Affected Versions
Linux:- Version fa6999e326fe7851ecbd572b8cb9be8e930ebf41 and below dd25bd9b0f36849808bd7625dcc59dd4c1aeef3e is affected.
- Version fa6999e326fe7851ecbd572b8cb9be8e930ebf41 and below ecc3b8691c1935f9f3e4eb964ab11e40fdec17f5 is affected.
- Version fa6999e326fe7851ecbd572b8cb9be8e930ebf41 and below 013a4484f061a2b41f052e25c0015203287e63f1 is affected.
- Version fa6999e326fe7851ecbd572b8cb9be8e930ebf41 and below 8fa3e9435a13c335efb63fb4f4e77531a0031159 is affected.
- Version fa6999e326fe7851ecbd572b8cb9be8e930ebf41 and below a9ae0f6dd45c3ccc1d69363f7aea8af179122730 is affected.
- Version 5.10 is affected.
- Before 5.10 is unaffected.
- Version 6.6.151, <= 6.6.* is unaffected.
- Version 6.12.103, <= 6.12.* is unaffected.
- Version 6.18.44, <= 6.18.* is unaffected.
- Version 7.1.8, <= 7.1.* is unaffected.
- Version 7.2-rc6, <= * is unaffected.