security1 publisher
Linux, GraalVM and Mozilla take three different routes against Branch Target Reuse
Linux has merged two kernel fixes, CVE-2026-64507 and CVE-2026-64508, for the Branch Target Reuse Spectre-v2 variant that leaks memory through JIT engines. GraalVM and Firefox took other routes, so a host's coverage depends on which JIT engine it lets untrusted code run in.
Publishers:thehackernews.com
Reality
- Evidence58
- Adoption40
- Hype gap+15
- Incentives
- Insufficient
- Confidence55