Out-of-Bounds Access in Linux Kernel's NTFS Module
CVE-2026-89782
What is CVE-2026-89782?
A vulnerability in the Linux kernel's NTFS module allows for out-of-bounds memory access due to improper indexing during log file replay. An attacker can craft an NTFS image that, when mounted, triggers an exploit through a manipulation of the restart table size exceeding its defined limit. This could lead to potential system crashes and unauthorized memory access. The vulnerability arises from inadequate checks on transaction IDs, enabling attackers to manipulate memory allocation, resulting in a risk for affected systems. It is crucial for users and administrators to ensure their systems are updated to prevent exploitation.
Affected Version(s)
Linux b46acd6a6a627d876898e1c84d3f84902264b445
Linux b46acd6a6a627d876898e1c84d3f84902264b445 < 339e59996ff193adcf1c438cf05f19e753beb3a7
Linux b46acd6a6a627d876898e1c84d3f84902264b445