Zapscape is a vulnerability in the KVM hypervisor that allows root access to the host system.
Information has been disclosed about a vulnerability (CVE-2026-64561) in the KVM hypervisor that allows root access to the host environment while also having root access in the guest system. The issue can also be exploited for local privilege escalation with access to the /dev/kvm device (for example, in RHEL, such access is granted to all users). A prototype exploit is available for download. The issue has been assigned […]
