PT-2026-52024 · Linux+2 · Linux Kernel+2
CVE-2026-53130
·
Published
2026-06-24
·
Updated
2026-09-07
CVSS v3.1
7.8
High
| Vector | AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H |
Name of the Vulnerable Software and Affected Versions
Linux kernel (affected versions not specified)
Description
An unsigned underflow occurs in the
omfs make empty() function when processing a crafted filesystem image. The omfs fill super() function fails to reject s sys blocksize values smaller than OMFS DIR START (440). Consequently, the calculation sbi->s sys blocksize - OMFS DIR START results in a value near 2^32, leading to a massive memset() operation that overwrites kernel memory beyond the backing block buffer.Recommendations
At the moment, there is no information about a newer version that contains a fix for this vulnerability.
Exploit
Integer Underflow
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Linuxmint
Linux Kernel
Ubuntu