Nested Overlay Filesystem Vulnerability in Linux Kernel
CVE-2026-89768
What is CVE-2026-89768?
A flaw in the Linux kernel's handling of path mappings for nested overlay filesystems has been identified, where the user-visible path of backing files is incorrectly derived. This issue arises when one backing file is nested within another, causing the real user path to be obscured in system diagnostics such as /proc//maps and perf/ftrace records. The vulnerability can lead to discrepancies in file path visibility, making it challenging for users and processes to accurately access files, thereby potentially disrupting file management operations in complex storage architectures.
Affected Version(s)
Linux 5b6aa9a843205da92d860e5011a7b29062a76b8f < 88c927a63dc717b6d46b20fe13ea713916e49089
Linux 5dfcb15974e7d0f96aca278dd9f1b85df91523ef
Linux 6af36aeb147a06dea47c49859cd6ca5659aeb987