CVE-2026-90434: falha em Linux
isofs: release zisofs block pointer buffer head
Publicada em
3Vexday Risk Score
Sem sinal de exploração. Nenhum artefato público de exploração conhecido até agora.
ssvc Trackepss 0.2%
probabilidade de exploração
0.2%top 89% das CVEs
exploração observada
nãonenhuma fonte reporta
In the Linux kernel, the following vulnerability has been resolved:
isofs: release zisofs block pointer buffer head
zisofs_fill_pages() reads the compressed block pointer table. The error
paths release the current buffer_head, the loop also releases the old
buffer_head when it advances. However, the success path leaves the last
buffer_head referenced. Release it before returning success.
Produtos afetados
Linux · LinuxCVEs relacionadas — Linux
No mesmo produto, das mais perigosas para as menos.
CVE-2024-53197HIGHALSA: usb-audio: Fix potential out-of-bound accesses for Extigy and Mbox devicesEPSS 4.1%KEVCVE-2026-31431HIGHcrypto: algif_aead - Revert to operating out-of-placeEPSS 3.4%KEVCVE-2024-53104HIGHmedia: uvcvideo: Skip parsing frames of type UVC_VS_UNDEFINED in uvc_parse_formatEPSS 3.4%KEVCVE-2025-39682CRITICALtls: fix handling of zero-length records on the rx_listEPSS 2.9%KEVCVE-2024-36971HIGHnet: fix __dst_negative_advice() raceEPSS 2.7%KEVCVE-2024-53150HIGHALSA: usb-audio: Fix out of bounds reads when finding clock sourcesEPSS 1.4%KEV
Referências
https://git.kernel.org/stable/c/0c2c54a7d174edc845f7bae24179fe72a926d10fhttps://git.kernel.org/stable/c/106e1a3b2b3454fbda63a59e9290cb9a253f81aahttps://git.kernel.org/stable/c/2f7dd9b86fe4076059e6a4a2a2c5d565afd76b9ehttps://git.kernel.org/stable/c/3371d30a97a257b7b5f2c8009612e9d452180f0ahttps://git.kernel.org/stable/c/5677737c2cedf417c0fcf61540b9cef0e62273d4https://git.kernel.org/stable/c/dbcc7d1b818162aeab2e97fd217d86546d9fde15https://git.kernel.org/stable/c/ec33e6b7a1de20d7e623b12633191a855445657dhttps://git.kernel.org/stable/c/f2a1611065c700a374b31c5cc8a7587f5e3bfe73