Zapscape (CVE‑2026‑64561): In‑Depth Analysis of the Linux KVM Guest‑to‑Host Escape
Zapscape (CVE‑2026‑64561) is a race‑condition bug in the KVM/x86 Shadow MMU that lets an attacker with L1 guest‑kernel privileges escape to the host as root, with a publicly released PoC targeting AMD nested virtualization and detailed mitigation guidance.
