Memory corruption in Linux kernel - CVE-2026-97548
Published: September 28, 2026
Vulnerability details
The vulnerability allows a remote attacker to access memory beyond the end of an in-memory btree cursor.
The vulnerability exists due to an incorrect cursor size calculation in the XFS rtrmap and rtrefcount _maxlevels_ondisk functions when processing a sufficiently large btree. A remote attacker can cause a sufficiently large btree to be processed to access memory beyond the end of an in-memory btree cursor.
User interaction is required.