Skip to main content

Over 150 LLM Providers · Over 5,300 Models The most extensible AI-powered pentesting platform. Open source. Star on GitHub

CVE-2026-80543

Published Aug 26, 2026 EPSS 0.15% (5th pctl)

Overview

CVE-2026-80543 is a known-severity vulnerability. It was published on August 26, 2026.

Technical Description

In the Linux kernel, the following vulnerability has been resolved:

s390/zcrypt: Pad trailing CCA or EP11 message with zeros

The both functions xcrb_msg_to_type6cprb_msgx() and

xcrb_msg_to_type6_ep11cprb_msgx() copy the user space message into a

kernel buffer based on the message length. But on further processing

the message is supposed to be 4 byte length adjusted. Thus up to 3

bytes of uninitialized kernel memory are forwarded to further

processing steps and may unwanted expose kernel memory to the crypto

card firmware.

This patch contains code to pad the gap between user space copied

message and message buffer length sent down to further processing of

the CCA or EP11 message to zeros.

Remediation

Check the references section for vendor advisories, patches, and mitigation guidance. If immediate patching is not possible, review the CVSS vector to understand the attack surface and apply compensating controls such as network segmentation or access restrictions.

Frequently Asked Questions

What is CVE-2026-80543?

CVE-2026-80543 is a known-severity vulnerability. It was published on August 26, 2026.

How severe is CVE-2026-80543?

CVSS score information is not yet available for this vulnerability. Check back as the CVE record is updated by NVD analysts.

How do I fix or remediate CVE-2026-80543?

Check the references section for vendor advisories, patches, and mitigation guidance. If immediate patching is not possible, review the CVSS vector to understand the attack surface and apply compensating controls such as network segmentation or access restrictions.

How can CyberStrike help with CVE-2026-80543?

CyberStrike's AI-powered security agents can automatically detect CVE-2026-80543 across your infrastructure using autonomous pentesting, DAST scanning, and HackBrowser. The platform continuously monitors for known vulnerabilities and provides actionable remediation guidance prioritized by real-world exploitability.