PT-2026-90903 · Azure Linux · Gfs2-Utils

Published

2026-09-03

·

Updated

2026-09-03

None

No severity ratings or metrics are available. When they are, we'll update the corresponding info on the page.
A stack out-of-bounds write vulnerability was found in gfs2-utils. In gfs2 edit, the di height field from on-disk inode metadata is used as an array index without bounds checking, causing a stack buffer overflow that may lead to arbitrary code execution when processing crafted GFS2 filesystem images.
Found an issue in the description? Have something to add? Feel free to write us 👾

Related Identifiers

AZL-99897

Affected Products

Gfs2-Utils