๐Ÿ” CVE Alert

CVE-2026-98117

UNKNOWN 0.0

cachefiles: Fix potential UAF/KASAN warning

CVSS Score
0.0
EPSS Score
0.0%
EPSS Percentile
0th

In the Linux kernel, the following vulnerability has been resolved: cachefiles: Fix potential UAF/KASAN warning Currently, trace_cachefiles_coherency() is being passed a pointer to a __be64 lain over the coherency data in struct cachefiles_xattr so that it can display the first 8 bytes. However, the data is of variable length and could even be 0 bytes. This could lead to a UAF or KASAN warning. Fix this by making sure the buffer has room for at least 8 bytes and that those 8 bytes are pre-cleared. Further, those bytes are not 8-byte aligned, so fix the tracepoint to extract the data as four 2-byte words (they are 2-byte aligned) and reassemble the __be64. The compiler will convert this into a single 8-byte load where the CPU supports it.

Vendor linux
Product linux
Ecosystems
Industries
Technology
Published Sep 25, 2026
Stay Ahead of the Next One

Get instant alerts for linux linux

Be the first to know when new unknown vulnerabilities affecting linux linux are published โ€” delivered to Slack, Telegram or Discord.

Get Free Alerts โ†’ Free ยท No credit card ยท 60 sec setup

Affected Versions

Linux / Linux
229105e5cfd9832a9ef1368c96e0098ec3a5fbf0 < 68d459e6e609c31f96a203dd6eec60c634f155e1 229105e5cfd9832a9ef1368c96e0098ec3a5fbf0 < 93488ea378b4427598cace558236c110515d743b 229105e5cfd9832a9ef1368c96e0098ec3a5fbf0 < a67632c8c2688d6e0091529bcefe54bc5ee80e9b
Linux / Linux
6.14

References

NVD โ†— CVE.org โ†— EPSS Data โ†—
git.kernel.org: https://git.kernel.org/stable/c/68d459e6e609c31f96a203dd6eec60c634f155e1 git.kernel.org: https://git.kernel.org/stable/c/93488ea378b4427598cace558236c110515d743b git.kernel.org: https://git.kernel.org/stable/c/a67632c8c2688d6e0091529bcefe54bc5ee80e9b