Incorrect calculation in Linux kernel - CVE-2026-98139
Published: September 28, 2026
Vulnerability details
The vulnerability allows a local user to corrupt NTFS free-space accounting.
The vulnerability exists due to incorrect accounting in ntfs_cluster_free_from_rl_nolock() when freeing NTFS cluster runs after ntfs_bitmap_clear_run() fails. A local user can trigger the freeing of cluster runs after a bitmap-clear failure to corrupt NTFS free-space accounting.
A failed bitmap-clear operation rolls back its partial modifications.