CVE-2026-89615
- EPSS 0.15%
- Veröffentlicht 11.09.2026 19:45:15
- Zuletzt bearbeitet 14.09.2026 13:19:15
In the Linux kernel, the following vulnerability has been resolved: fs/ntfs3: bound page_lcns[] index by the log record The copy_lcns loop and the redo shorten loop index page_lcns[] at j + i, where i runs up to the log record's lcns_follow. That c...
CVE-2026-89613
- EPSS 0.55%
- Veröffentlicht 11.09.2026 19:45:14
- Zuletzt bearbeitet 13.09.2026 07:17:26
In the Linux kernel, the following vulnerability has been resolved: ntfs: reject invalid empty mapping pairs Reject an attribute with empty mapping pairs if it has inconsistent highest VCN and size.
CVE-2026-89614
- EPSS 0.41%
- Veröffentlicht 11.09.2026 19:45:14
- Zuletzt bearbeitet 13.09.2026 07:17:26
In the Linux kernel, the following vulnerability has been resolved: ntfs: bound the free-cluster bitmap scan to the volume vol->lcn_empty_bits_per_page is sized from vol->nr_clusters at mount, but ntfs_cluster_alloc() bounds its scan of that array ...
CVE-2026-89612
- EPSS 0.55%
- Veröffentlicht 11.09.2026 19:45:13
- Zuletzt bearbeitet 13.09.2026 07:17:26
In the Linux kernel, the following vulnerability has been resolved: ntfs: reject invalid MFT LCNs from boot sector The NTFS boot sector stores the MFT and MFTMirr locations as unsigned 64-bit LCNs, but parse_ntfs_boot_sector() decoded them into an ...
CVE-2026-89611
- EPSS 0.38%
- Veröffentlicht 11.09.2026 19:45:12
- Zuletzt bearbeitet 13.09.2026 07:17:26
In the Linux kernel, the following vulnerability has been resolved: ntfs: validate non-resident attribute offsets ntfs_attr_update_meta() shifts the attribute name when converting between non-sparse and sparse attributes. Converting to sparse also ...
CVE-2026-89609
- EPSS 0.18%
- Veröffentlicht 11.09.2026 19:45:11
- Zuletzt bearbeitet 14.09.2026 13:19:15
In the Linux kernel, the following vulnerability has been resolved: ecryptfs: hold msg ctx list lock when cleaning daemon queue ecryptfs_exorcise_daemon() drops queued messages from a dying daemon without holding ecryptfs_msg_ctx_lists_mux, but ecr...
CVE-2026-89610
- EPSS 0.55%
- Veröffentlicht 11.09.2026 19:45:11
- Zuletzt bearbeitet 13.09.2026 07:17:26
In the Linux kernel, the following vulnerability has been resolved: ntfs: verify run length exceeding volume boundary The mapping pairs decoder validates that the starting LCN is within the volume but does not check if the run extends beyond the vo...
CVE-2026-89608
- EPSS 0.16%
- Veröffentlicht 11.09.2026 19:45:10
- Zuletzt bearbeitet 14.09.2026 13:19:15
In the Linux kernel, the following vulnerability has been resolved: ecryptfs: pass packet set buffer size to parser ecryptfs_parse_packet_set() receives a pointer into the file header, but it calculates the remaining packet buffer size from PAGE_SI...
CVE-2026-89607
- EPSS 0.16%
- Veröffentlicht 11.09.2026 19:45:09
- Zuletzt bearbeitet 14.09.2026 13:19:14
In the Linux kernel, the following vulnerability has been resolved: ecryptfs: reject oversized encrypted_key_size in parse_tag_3_packet parse_tag_3_packet() set encrypted_key_size from the Tag 3 packet body without bounding it against ECRYPTFS_MAX_...
CVE-2026-89605
- EPSS 0.16%
- Veröffentlicht 11.09.2026 19:45:08
- Zuletzt bearbeitet 14.09.2026 13:19:14
In the Linux kernel, the following vulnerability has been resolved: ecryptfs: release message context on send failure ecryptfs_send_message_locked() moves a message context from the free list to the allocated list before sending the request to the ...