๐Ÿ” CVE Alert

CVE-2026-72200

CRITICAL 9.8

ntfs: detect mapping-pairs LCN accumulator overflow

CVSS Score
9.8
EPSS Score
0.5%
EPSS Percentile
42th

In the Linux kernel, the following vulnerability has been resolved: ntfs: detect mapping-pairs LCN accumulator overflow The NTFS mapping-pairs parser accumulates relative LCN deltas in a signed integer. A corrupted attribute can drive that addition past the representable range. One corrupt runlist shape sets the accumulated LCN to S64_MAX and then adds a delta of 1 in the next mapping-pairs entry. Signed overflow is undefined and can turn an invalid runlist into a different set of physical clusters. Check the LCN addition for overflow before storing the next run.

Vendor linux
Product linux
Ecosystems
Industries
Technology
Published Aug 15, 2026
Last Updated Aug 19, 2026
Stay Ahead of the Next One

Get instant alerts for linux linux

Be the first to know when new critical vulnerabilities affecting linux linux are published โ€” delivered to Slack, Telegram or Discord.

Get Free Alerts โ†’ Free ยท No credit card ยท 60 sec setup

CVSS v3 Breakdown

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Attack Vector
Attack Complexity
Privileges Required
User Interaction
Scope
Confidentiality
Integrity
Availability

Affected Versions

Linux / Linux
1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 < 7ffa8f3d30236e0ab897c30bdb01224ff1fe1c89 1e9ea7e04472d4e5e12e58c881eaacfb3e49b669 < 7fb64788812d137b37f6d8724e1e41c624c1e814 1e9ea7e04472d4e5e12e58c881eaacfb3e49b669 < ec4f061f2219e0f0c6465d56d0380bf749235a53
Linux / Linux
2.6.12 7.1

References

NVD โ†— CVE.org โ†— EPSS Data โ†—
git.kernel.org: https://git.kernel.org/stable/c/7ffa8f3d30236e0ab897c30bdb01224ff1fe1c89 git.kernel.org: https://git.kernel.org/stable/c/7fb64788812d137b37f6d8724e1e41c624c1e814 git.kernel.org: https://git.kernel.org/stable/c/ec4f061f2219e0f0c6465d56d0380bf749235a53