๐Ÿ” CVE Alert

CVE-2026-64074

UNKNOWN 0.0

fs/statmount: fix slab out-of-bounds write in statmount_mnt_idmap

CVSS Score
0.0
EPSS Score
0.0%
EPSS Percentile
0th

In the Linux kernel, the following vulnerability has been resolved: fs/statmount: fix slab out-of-bounds write in statmount_mnt_idmap statmount_mnt_idmap() writes one mapping with seq_printf() and then manually advances seq->count to include the NUL separator. If seq_printf() overflows, seq_set_overflow() sets seq->count to seq->size. The manual seq->count++ changes this to seq->size + 1. seq_has_overflowed() then no longer detects the overflow. The corrupted count returns to statmount_string(), which later executes: seq->buf[seq->count++] = '\0'; This causes a 1-byte NULL out-of-bounds write on the dynamically allocated seq buffer. Fix this by checking for overflow immediately after seq_printf().

Vendor linux
Product linux
Ecosystems
Industries
Technology
Published Jul 19, 2026
Stay Ahead of the Next One

Get instant alerts for linux linux

Be the first to know when new unknown vulnerabilities affecting linux linux are published โ€” delivered to Slack, Telegram or Discord.

Get Free Alerts โ†’ Free ยท No credit card ยท 60 sec setup

Affected Versions

Linux / Linux
37c4a9590e1efcae7749682239fc22a330d2d325 < e37ea2c6f17f273813ea4e8e94c102591d598ce1 37c4a9590e1efcae7749682239fc22a330d2d325 < 93614949dc86f068e3c32c32cf1ee2a2323177a7 37c4a9590e1efcae7749682239fc22a330d2d325 < a3bf0f28d4ba16e1f35f8c983bb04426b87e2a78
Linux / Linux
6.15

References

NVD โ†— CVE.org โ†— EPSS Data โ†—
git.kernel.org: https://git.kernel.org/stable/c/e37ea2c6f17f273813ea4e8e94c102591d598ce1 git.kernel.org: https://git.kernel.org/stable/c/93614949dc86f068e3c32c32cf1ee2a2323177a7 git.kernel.org: https://git.kernel.org/stable/c/a3bf0f28d4ba16e1f35f8c983bb04426b87e2a78