Integer underflow in Linux kernel - CVE-2026-89551
Published: September 12, 2026
Vulnerability details
The vulnerability allows a remote attacker to cause downstream XDR decoders to use an incorrect stream bound.
The vulnerability exists due to an integer underflow in xdr_buf_trim() when processing GSS Kerberos v2 data whose recorded buffer length is smaller than the associated I/O vector lengths. A remote attacker can cause xdr_buf_trim() to consume more bytes than buf->len records to cause downstream XDR decoders to use an incorrect stream bound.