5.5

CVE-2026-64256

xfs: don't wrap around quota ids in dqiterate

In the Linux kernel, the following vulnerability has been resolved:

xfs: don't wrap around quota ids in dqiterate

LOLLM noticed that q_id is an unsigned 32-bit variable.  If it happens
to be set to XFS_DQ_ID_MAX due to a filesystem that actually has a dquot
for ID_MAX, then this addition will truncate to zero and the iteration
starts over.  Fix this by casting to u64.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
LinuxLinux Kernel Version >= 6.8 < 6.12.96
LinuxLinux Kernel Version >= 6.13 < 6.18.39
LinuxLinux Kernel Version >= 6.19 < 7.1.4
LinuxLinux Kernel Version7.2 Updaterc1
LinuxLinux Kernel Version7.2 Updaterc2
LinuxLinux Kernel Version7.2 Updaterc3
VulnDex Vulnerability Enrichment
Diese Information steht angemeldeten Benutzern zur Verfügung. Login Login
Zu dieser CVE wurde keine Warnung gefunden.
EPSS Metriken
Typ Quelle Score Percentile
EPSS FIRST.org 0.16% 0.052
CVSS Metriken
Quelle Base Score Exploit Score Impact Score Vector String
NIST 5.5 1.8 3.6
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
Es wurden noch keine Informationen zu CWE veröffentlicht.
https://git.kernel.org/stable/c/249e311c2ba392ceaf9ebfc145a46922946f069a
Patch
https://git.kernel.org/stable/c/d1c4c40599c376aeb0c93068a2ae344e79ee4b90
Patch
https://git.kernel.org/stable/c/2b14fe1e0924c6b901f4256456342569c5397abe
Patch
https://git.kernel.org/stable/c/d766e4e5e85d829629c3ba503802fe1303d7b591
Patch