Unchecked Return Value in Linux kernel - CVE-2026-89458
Published: September 12, 2026
Vulnerability details
The vulnerability allows a local user to disclose sensitive information.
The vulnerability exists due to an unchecked return value in dasd_int_handler when handling an NRF read of an unallocated ESE track. A local user can trigger a failed ESE read that is completed successfully to disclose sensitive information.
A failed sense-data parse or a current track outside the requested range can leave destination pages untouched.