Interpretation Conflict in Linux kernel - CVE-2026-98005
Published: September 28, 2026
Vulnerability details
The vulnerability allows a local user to cause ambiguous inode-sharing cache key interpretation.
The vulnerability exists due to ambiguous key encoding in EROFS inode_share cache key construction when combining domain IDs and inode fingerprints. A local user can provide colliding key components to cause ambiguous inode-sharing cache key interpretation.