SB20260815252 - Out-of-bounds read in Linux kernel ntfs3
Published: August 15, 2026
Breakdown by Severity
- Low
- Medium
- High
- Critical
Description
This security bulletin contains information about 1 vulnerability.
1) Out-of-bounds read (CVE-ID: CVE-2026-72478)
CWE-ID: CWE-125 - Out-of-bounds read
CVSSv4: 6.7 [CVSS:4.0/AV:L/AC:L/AT:N/PR:N/UI:A/VC:N/VI:N/VA:H/SC:N/SI:N/SA:N]
The vulnerability allows a remote attacker to cause a denial of service.
The vulnerability exists due to an out-of-bounds read in run_get_highest_vcn() when mounting an NTFS filesystem containing a crafted $LogFile UpdateMappingPairs record with unterminated mapping-pairs data. A remote attacker can provide a specially crafted filesystem image to cause a denial of service.
The issue is triggered during log replay on mount.
Remediation
Install update from vendor's website.
References
- https://git.kernel.org/stable/c/41081202eb823f5b27ff164b12010b24428100ad
- https://git.kernel.org/stable/c/8afc24a884aff6a6f08028bd779ee65c40054455
- https://git.kernel.org/stable/c/a31893206588374d7d16fad387189d8165c7efd3
- https://git.kernel.org/stable/c/bb11485a87fbb2254b62cfed630b699d50e57da8
- https://git.kernel.org/stable/c/c23083b472a720c3f60b147db05b25b751c7c1bf
- https://git.kernel.org/stable/c/c69b9003332917b652175d5fa9d84158c5ed8617