Integer overflow in Linux kernel - CVE-2026-90199
Published: September 19, 2026
Vulnerability details
The vulnerability allows a local user to bypass validation of malformed NTFS attributes.
The vulnerability exists due to an integer overflow in mi_enum_attr() when processing malformed on-disk non-resident NTFS attributes. A local user can supply an attribute with an end virtual cluster number near U64_MAX to bypass validation of malformed NTFS attributes.
Affected software
How to mitigate CVE-2026-90199
External References
- https://git.kernel.org/stable/c/0441e34ce098c19185a7b52c5b8b89a8a5b26888
- https://git.kernel.org/stable/c/20fd9f64c0050658f2031e6bd5d552c6f0c8f7e3
- https://git.kernel.org/stable/c/2b9a0e57bfd365e2096706b19ae34dce3b4a884b
- https://git.kernel.org/stable/c/7ab69cef49ebdfee288287d62641b24ab1445ecc
- https://git.kernel.org/stable/c/ce9a619c432b9a4044fee115c5483fbed946c131