In the Linux kernel, the following vulnerability has been resolved: dm log: fix out-of-bounds write due to region_count overflow The local variable region_count in create_log_context() is declared …
High CVSS 7.8
Summary
In the Linux kernel, the following vulnerability has been resolved: dm log: fix out-of-bounds write due to region_count overflow The local variable region_count in create_log_context() is declared as unsigned int (32-bit), but dm_sector_div_up() returns sector_t (64-bit). When a device-mapper target has a sufficiently large ti->len with a small region_size, the division result can exceed UINT_MAX. The truncated value is then used to calculate bitset_size, causing clean_bits, sync_bits, and re…
In-depth triage · Auto channel
No in-depth report has been generated yet (DR-003 v2 AI pipeline is under construction).
Affected products
- :
Sources
- NVD DATABASE
Original Links
- https://git.kernel.org/stable/c/12bd5b88e91a02785244ff1d20fb157e96e9cdc8 Patch
- https://git.kernel.org/stable/c/3ec74da927b4e171a6fc0e77b1188ba4d019af51 Patch
- https://git.kernel.org/stable/c/44ab8875ae4a2842bde2d756bed195d375e0debb Patch
- https://git.kernel.org/stable/c/4ec8323b9f0764a14d532b1ae9b87f8a9fecb867 Patch
- https://git.kernel.org/stable/c/b455903eed4558982be0811f5b7f44f6bbc4ff57 Patch
- https://git.kernel.org/stable/c/c20e36b7631d83e7535877f08af8b0af72c44b1a Patch
- https://git.kernel.org/stable/c/d4ac87567f86a55c3c92e9a5144dcd943a9772a1 Patch
- https://git.kernel.org/stable/c/defe483e47173768c227532694dc78cb65db5f09 Patch
- https://access.redhat.com/security/cve/CVE-2026-53059 Third Party Advisory
- https://bugzilla.redhat.com/show_bug.cgi?id=2492277 Third Party Advisory
- https://security.access.redhat.com/data/csaf/v2/vex/2026/cve-2026-53059.json Third Party Advisory
Timeline
- nvd_ingest NVD