Out-of-bounds read in Linux kernel - CVE-2026-80961
Published: September 13, 2026
Vulnerability details
The vulnerability allows a local privileged user to disclose sensitive information.
The vulnerability exists due to an out-of-bounds read in dm-pcache cache_key_decode() when decoding cache keys from supplied cache-device metadata. A local privileged user can provide key metadata whose intra-segment offset and length extend beyond the segment boundary to disclose sensitive information.