๐Ÿ” CVE Alert

CVE-2026-89584

HIGH 7.8

block: validate user space vectors during extraction

CVSS Score
7.8
EPSS Score
0.0%
EPSS Percentile
0th

In the Linux kernel, the following vulnerability has been resolved: block: validate user space vectors during extraction The bio-based drivers don't necessarily check the alignment split, and stacking block drivers don't always handle a misalignment detected after submitting the bio. Validate user vectors against the device's dma_alignment as the bio is built from the iov_iter, rejecting misaligned early with -EINVAL.

Vendor linux
Product linux
Ecosystems
Industries
Technology
Published Sep 11, 2026
Last Updated Sep 13, 2026
Stay Ahead of the Next One

Get instant alerts for linux linux

Be the first to know when new high vulnerabilities affecting linux linux are published โ€” delivered to Slack, Telegram or Discord.

Get Free Alerts โ†’ Free ยท No credit card ยท 60 sec setup

CVSS v3 Breakdown

CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Attack Vector
Attack Complexity
Privileges Required
User Interaction
Scope
Confidentiality
Integrity
Availability

Affected Versions

Linux / Linux
5ff3f74e145adc79b49668adb8de276446acf6be < d44a97a3b1c00cc571245124e23e5ceb0a0225a0 5ff3f74e145adc79b49668adb8de276446acf6be < 14b007e178811db72fbb1ebb3535160db6ec1e6a
Linux / Linux
6.18

References

NVD โ†— CVE.org โ†— EPSS Data โ†—
git.kernel.org: https://git.kernel.org/stable/c/d44a97a3b1c00cc571245124e23e5ceb0a0225a0 git.kernel.org: https://git.kernel.org/stable/c/14b007e178811db72fbb1ebb3535160db6ec1e6a