๐Ÿ” CVE Alert

CVE-2026-72208

CRITICAL 9.8

ntfs: add bounds check before accessing EA entries

CVSS Score
9.8
EPSS Score
0.5%
EPSS Percentile
42th

In the Linux kernel, the following vulnerability has been resolved: ntfs: add bounds check before accessing EA entries in ntfs_ea_lookup and ntfs_listxattr, this verifies that there is enough space in the EA entry before accessing the next_entry_offset field of the EA entry.

Vendor linux
Product linux
Ecosystems
Industries
Technology
Published Aug 15, 2026
Last Updated Aug 18, 2026
Stay Ahead of the Next One

Get instant alerts for linux linux

Be the first to know when new critical vulnerabilities affecting linux linux are published โ€” delivered to Slack, Telegram or Discord.

Get Free Alerts โ†’ Free ยท No credit card ยท 60 sec setup

CVSS v3 Breakdown

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Attack Vector
Attack Complexity
Privileges Required
User Interaction
Scope
Confidentiality
Integrity
Availability

Affected Versions

Linux / Linux
c451d34ae14201c2bb40652bf74072a79ff82f7d < d9d9925de1d8f233cc60d3dc356e12f232f97c15 c451d34ae14201c2bb40652bf74072a79ff82f7d < 937282f7d15b593d0be765fa2ced164130ec87f7
Linux / Linux
7.1

References

NVD โ†— CVE.org โ†— EPSS Data โ†—
git.kernel.org: https://git.kernel.org/stable/c/d9d9925de1d8f233cc60d3dc356e12f232f97c15 git.kernel.org: https://git.kernel.org/stable/c/937282f7d15b593d0be765fa2ced164130ec87f7