7.8

CVE-2026-97548

xfs: fix the rtrmap and rtrefcount _maxlevels_ondisk functions

In the Linux kernel, the following vulnerability has been resolved:

xfs: fix the rtrmap and rtrefcount _maxlevels_ondisk functions

The _maxlevels_ondisk functions are used to compute the size of
in-memory btree cursors for each btree type.  Unfortunately, LOLLM
noticed that the rtrmap and rtrefcount versions of these functions
forget to account for the inode root, which means that we could access
beyond the end of the cursor given a sufficiently large btree.  Fix
this.
Daten sind bereitgestellt durch das CVE Programm von einer CVE Numbering Authority (CNA) (Unstrukturiert).
HerstellerLinux
≫
Produkt Linux
Default Statusunaffected
Version 9abe03a0e4f978615a2b1b484b8d09ca84c16ea0
Version < 108114437915e61e8f88d1cbcc442c3f886a347e
Status affected
Version 9abe03a0e4f978615a2b1b484b8d09ca84c16ea0
Version < 84316cb25af95a60e655ccc8fe646bb5ad631b71
Status affected
Version 9abe03a0e4f978615a2b1b484b8d09ca84c16ea0
Version < aa301322f72f82f26e4ba0826018d41388ab9896
Status affected
HerstellerLinux
≫
Produkt Linux
Default Statusaffected
Version 6.14
Status affected
Version 0
Version < 6.14
Status unaffected
Version <= 6.18.*
Version 6.18.53
Status unaffected
Version <= 7.2.*
Version 7.2.7
Status unaffected
Version <= *
Version 7.3-rc3
Status unaffected
VulnDex Vulnerability Enrichment
Diese Information steht angemeldeten Benutzern zur Verfügung. Login Login
Zu dieser CVE wurde keine Warnung gefunden.
EPSS Metriken
Typ Quelle Score Percentile
EPSS FIRST.org 0.17% 0.059
CVSS Metriken
Quelle Base Score Exploit Score Impact Score Vector String
416baaa9-dc9f-4396-8d5f-8c081fb06d67 7.8 1.8 5.9
CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
Es wurden noch keine Informationen zu CWE veröffentlicht.
https://git.kernel.org/stable/c/108114437915e61e8f88d1cbcc442c3f886a347e
https://git.kernel.org/stable/c/84316cb25af95a60e655ccc8fe646bb5ad631b71
https://git.kernel.org/stable/c/aa301322f72f82f26e4ba0826018d41388ab9896