SEPTEMBER 8, 2026
Live Feed
Back to database
Case File

CVE-2026-64040

UNKNOWN · CVSS N/A EPSS 0.19%

Source: NVD + CISA KEV + EPSS · Published 2026-07-19 · Last synced 2026-08-18

CyberRota Analysis

AI-Generated

The vulnerability affects the Linux kernel's cachefiles component, where a failure in the vfs_mkdir() function does not properly return the corresponding error code, potentially leading to NULL pointer dereferences. This flaw could result in unexpected behavior or crashes in applications relying on this functionality. Linux system administrators and developers should prioritize addressing this issue to maintain system stability and reliability.

CVE
CVE-2026-64040
Severity
UNKNOWN
CVSS
N/A
EPSS
0.19%
Linux

Original NVD Description

In the Linux kernel, the following vulnerability has been resolved: cachefiles: Fix error return when vfs_mkdir() fails When vfs_mkdir() fails, the error code is not extracted from the returned error pointer. This causes mkdir_error to be reached with ret=0, which leads to returning ERR_PTR(0) (NULL) instead of a proper error pointer. Fix this by extracting the error code from the error pointer when vfs_mkdir() fails.