PT-2026-85017 · Red Hat · Red Hat Enterprise Linux 7+2

CVE-2026-71220

·

Published

2026-09-03

·

Updated

2026-09-03

CVSS v3.1

7.0

High

VectorAV:L/AC:H/PR:N/UI:R/S:U/C:H/I:H/A:H
A stack out-of-bounds write vulnerability was found in gfs2-utils. In gfs2 edit, the di height field from on-disk inode metadata is used as an array index without bounds checking, causing a stack buffer overflow that may lead to arbitrary code execution when processing crafted GFS2 filesystem images.

Fix

Memory Corruption

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2026-71220

Affected Products

Red Hat Enterprise Linux 7
Red Hat Enterprise Linux 8
Red Hat Enterprise Linux 9