CVE-2026-89616
- EPSS 0.37%
- Veröffentlicht 11.09.2026 19:45:16
- Zuletzt bearbeitet 14.09.2026 13:19:15
In the Linux kernel, the following vulnerability has been resolved: fs/ntfs3: fix info-leak on partial LZNT decompress in ni_read_frame() ni_read_frame() decompresses an LZNT $DATA frame into the vmapped target pages and then trusts decompress_lznt...
CVE-2026-89617
- EPSS 0.14%
- Veröffentlicht 11.09.2026 19:45:16
- Zuletzt bearbeitet 14.09.2026 13:19:15
In the Linux kernel, the following vulnerability has been resolved: fs/ntfs3: validate dirty page table on log replay Each DIR_PAGE_ENTRY ends in a page_lcns[] array whose length is the on-disk lcns_follow field. check_rstbl() validates the table b...
CVE-2026-89615
- EPSS 0.15%
- Veröffentlicht 11.09.2026 19:45:15
- Zuletzt bearbeitet 14.09.2026 13:19:15
In the Linux kernel, the following vulnerability has been resolved: fs/ntfs3: bound page_lcns[] index by the log record The copy_lcns loop and the redo shorten loop index page_lcns[] at j + i, where i runs up to the log record's lcns_follow. That c...
CVE-2026-89611
- EPSS 0.38%
- Veröffentlicht 11.09.2026 19:45:12
- Zuletzt bearbeitet 13.09.2026 07:17:26
In the Linux kernel, the following vulnerability has been resolved: ntfs: validate non-resident attribute offsets ntfs_attr_update_meta() shifts the attribute name when converting between non-sparse and sparse attributes. Converting to sparse also ...
CVE-2026-89609
- EPSS 0.18%
- Veröffentlicht 11.09.2026 19:45:11
- Zuletzt bearbeitet 14.09.2026 13:19:15
In the Linux kernel, the following vulnerability has been resolved: ecryptfs: hold msg ctx list lock when cleaning daemon queue ecryptfs_exorcise_daemon() drops queued messages from a dying daemon without holding ecryptfs_msg_ctx_lists_mux, but ecr...
CVE-2026-89610
- EPSS 0.55%
- Veröffentlicht 11.09.2026 19:45:11
- Zuletzt bearbeitet 13.09.2026 07:17:26
In the Linux kernel, the following vulnerability has been resolved: ntfs: verify run length exceeding volume boundary The mapping pairs decoder validates that the starting LCN is within the volume but does not check if the run extends beyond the vo...
CVE-2026-89608
- EPSS 0.16%
- Veröffentlicht 11.09.2026 19:45:10
- Zuletzt bearbeitet 14.09.2026 13:19:15
In the Linux kernel, the following vulnerability has been resolved: ecryptfs: pass packet set buffer size to parser ecryptfs_parse_packet_set() receives a pointer into the file header, but it calculates the remaining packet buffer size from PAGE_SI...
CVE-2026-89607
- EPSS 0.16%
- Veröffentlicht 11.09.2026 19:45:09
- Zuletzt bearbeitet 14.09.2026 13:19:14
In the Linux kernel, the following vulnerability has been resolved: ecryptfs: reject oversized encrypted_key_size in parse_tag_3_packet parse_tag_3_packet() set encrypted_key_size from the Tag 3 packet body without bounding it against ECRYPTFS_MAX_...
CVE-2026-89605
- EPSS 0.16%
- Veröffentlicht 11.09.2026 19:45:08
- Zuletzt bearbeitet 14.09.2026 13:19:14
In the Linux kernel, the following vulnerability has been resolved: ecryptfs: release message context on send failure ecryptfs_send_message_locked() moves a message context from the free list to the allocated list before sending the request to the ...
CVE-2026-89606
- EPSS 0.14%
- Veröffentlicht 11.09.2026 19:45:08
- Zuletzt bearbeitet 14.09.2026 13:19:14
In the Linux kernel, the following vulnerability has been resolved: ecryptfs: reject too-small tag 70 packets ecryptfs_parse_tag_70_packet() subtracts fixed metadata fields from the parsed packet body size to derive the encrypted filename size. A ...