Out-of-bounds write in Linux kernel - CVE-2026-80536
Published: August 27, 2026
Vulnerability details
The vulnerability allows a remote attacker to execute arbitrary code.
The vulnerability exists due to an out-of-bounds write in xlog_recover_do_reg_buffer() when processing a crafted XFS filesystem image during mount-time log recovery. A remote attacker can mount a specially crafted filesystem image to execute arbitrary code.
The issue is reachable during mount-time recovery on production kernels where the bounds check was enforced only by an ASSERT().
Affected software
Debian Linux
linux (Debian package)
How to mitigate CVE-2026-80536
linux (Debian package) - update to 6.12.107-1