Integer underflow in Linux kernel - CVE-2026-97551
Published: September 28, 2026
Vulnerability details
The vulnerability allows a local user to cause a denial of service.
The vulnerability exists due to an integer underflow in XFS parent pointer update handling when processing parent pointer add or replacement updates that grow the attribute fork. A local user can trigger a parent pointer update that grows the attribute fork to cause a denial of service.
Exploitation requires an allocation group with exactly zero available blocks.