๐Ÿ” CVE Alert

CVE-2026-93146

UNKNOWN 0.0

time/namespace: Validate nanosecond field in proc_timens_set_offset()

CVSS Score
0.0
EPSS Score
0.0%
EPSS Percentile
0th

In the Linux kernel, the following vulnerability has been resolved: time/namespace: Validate nanosecond field in proc_timens_set_offset() The function validates tv_sec to be within [-KTIME_SEC_MAX, KTIME_SEC_MAX] but never validates that tv_nsec is within the valid range of [0, NSEC_PER_SEC-1] before using it in timespec64_add(). timespec64_add() expects both timespec64 structures to have normalized values with tv_nsec in the range [0, 999999999]. If off->val.tv_nsec contains invalid values (negative or >= NSEC_PER_SEC), it could lead to incorrect calculations or unexpected behavior. Add validation to ensure tv_nsec is within the valid range before performing the addition.

Vendor linux
Product linux
Ecosystems
Industries
Technology
Published Sep 17, 2026
Stay Ahead of the Next One

Get instant alerts for linux linux

Be the first to know when new unknown vulnerabilities affecting linux linux are published โ€” delivered to Slack, Telegram or Discord.

Get Free Alerts โ†’ Free ยท No credit card ยท 60 sec setup

Affected Versions

Linux / Linux
04a8682a71becdb639ec9c0d82b315a2baef7a5d < db667d2970c756cc7b483f45f272440f845a665b 04a8682a71becdb639ec9c0d82b315a2baef7a5d < 1f0c3c0c36c7aedf55a60d9c71c4bd258b8937ce 04a8682a71becdb639ec9c0d82b315a2baef7a5d < 06aba58e58492d2b8eae059274caed29025ea96e
Linux / Linux
5.6

References

NVD โ†— CVE.org โ†— EPSS Data โ†—
git.kernel.org: https://git.kernel.org/stable/c/db667d2970c756cc7b483f45f272440f845a665b git.kernel.org: https://git.kernel.org/stable/c/1f0c3c0c36c7aedf55a60d9c71c4bd258b8937ce git.kernel.org: https://git.kernel.org/stable/c/06aba58e58492d2b8eae059274caed29025ea96e