OCTOBER 9, 2026
Live Feed
Back to database
Case File

CVE-2026-97548

HIGH · CVSS 7.8 EPSS 0.17%

Source: NVD + CISA KEV + EPSS · Published 2026-09-25 · Last synced 2026-10-09

CyberRota Analysis

AI-Generated

The vulnerability affects the Linux kernel's xfs filesystem, specifically the rtrmap and rtrefcount functions used for calculating the size of in-memory btree cursors. This oversight could lead to out-of-bounds access when handling large btrees, potentially resulting in data corruption or system instability. System administrators and developers managing Linux environments with xfs filesystems should prioritize applying the relevant patches to mitigate this risk.

CVE
CVE-2026-97548
Severity
HIGH
CVSS
7.8
EPSS
0.17%
Linux

Original NVD Description

In the Linux kernel, the following vulnerability has been resolved: xfs: fix the rtrmap and rtrefcount _maxlevels_ondisk functions The _maxlevels_ondisk functions are used to compute the size of in-memory btree cursors for each btree type. Unfortunately, LOLLM noticed that the rtrmap and rtrefcount versions of these functions forget to account for the inode root, which means that we could access beyond the end of the cursor given a sufficiently large btree. Fix this.