SEPTEMBER 14, 2026
Live Feed
Back to database
Case File

CVE-2026-89169

MEDIUM · CVSS 4.1 EPSS 0.11%

Source: NVD + CISA KEV + EPSS · Published 2026-09-11 · Last synced 2026-09-14

CyberRota Analysis

AI-Generated

A vulnerability in live-boot ff8867c allows attackers to circumvent the dm-verity-enforce-roothash-signature protection when the .verity file is absent, potentially leading to unauthorized modifications of the system image. This could compromise the integrity of the boot process and expose sensitive data or system functionality. Organizations utilizing live-boot systems should prioritize addressing this vulnerability to safeguard against potential exploitation.

CVE
CVE-2026-89169
Severity
MEDIUM
CVSS
4.1
EPSS
0.11%

Original NVD Description

live-boot ff8867c allows attackers to bypass the dm-verity-enforce-roothash-signature protection mechanism when the .verity file is missing.