You are using an out of date browser. It may not display this or other websites correctly. You should upgrade or use an alternative browser.
cve 2025 37936
About this tag
CVE-2025-37936 is a vulnerability in the Linux kernel's perf/x86/intel KVM code that can allow a guest to run with PEBS (Precise Event-Based Sampling) enabled without requesting it. Microsoft's advisory lists Azure Linux as potentially affected, but this is a conservative attestation and does not guarantee that other Microsoft products are not vulnerable. The flaw is relevant to users of Azure Linux and WSL, as it involves kernel-level security in virtualized environments. Discussions on WindowsForum focus on understanding the scope of the vulnerability and its implications for Microsoft products.
Microsoft’s public advisory for CVE-2025-37936 correctly identifies a flaw in the Linux kernel’s perf/x86/intel KVM code that can allow a guest to be run with PEBS (Precise Event-Based Sampling) enabled when the guest itself did not request it — and Microsoft’s published inventory currently...