SB20260727214 - Integer overflow in Linux kernel hfsplus
Published: July 27, 2026
Breakdown by Severity
- Low
- Medium
- High
- Critical
Description
This security bulletin contains information about 1 vulnerability.
1) Integer overflow (CVE-ID: CVE-2026-64361)
CWE-ID: CWE-190 - Integer overflow
CVSSv4: 6.8 [CVSS:4.0/AV:L/AC:L/AT:N/PR:L/UI:N/VC:N/VI:N/VA:H/SC:N/SI:N/SA:N]
The vulnerability allows a local user to cause a denial of service.
The vulnerability exists due to an integer overflow in check_and_correct_requested_length() in the hfs and hfsplus filesystem code when processing crafted filesystem metadata. A local user can trigger an underflowed length value that bypasses a bounds check to cause a denial of service.
Exploitation can result in a read far beyond the node buffer during a subsequent memmove operation.
Remediation
Install update from vendor's website.
References
- https://git.kernel.org/stable/c/607217f7ad419b53926f71e3f75001813bbc08ad
- https://git.kernel.org/stable/c/671c3fcc2ad31c1311ea6414382a2d95104ae1b9
- https://git.kernel.org/stable/c/7399c3baee7bb622a92f0b895cd4d3009a693f2b
- https://git.kernel.org/stable/c/966cb76fb2857a4242cab6ea2ea17acf818a3da7
- https://git.kernel.org/stable/c/b6a481642ea1977be2f84dc08c5affd742c177e7
- https://git.kernel.org/stable/c/c25d3c931a63e762fcaa9cb125b901c53b62403f
- https://git.kernel.org/stable/c/c8dd112173c02adf539fe2ad34a45f5e0068780d
- https://git.kernel.org/stable/c/fc9d1447ca3cdc78d2e4ace1ce1f3a7c77ca08b1