PT-2026-94807 · Linux · Linux Kernel
CVE-2026-92499
·
Published
2026-09-17
·
Updated
2026-09-28
None
No severity ratings or metrics are available. When they are, we'll update the corresponding info on the page.
Name of the Vulnerable Software and Affected Versions
Linux kernel (affected versions not specified)
Description
An issue exists in the ext4 file system where a corrupted directory can cause a use-after-free error. This occurs when the
ext4 readdir() function resumes from an invalid position. Specifically, the ext4 dir llseek() function may invalidate the directory cookie, leading ext4 readdir() to rescan directory entries. If a corrupted rec len is present, it can set an offset where the block lacks sufficient space for a complete directory entry. This can lead to an out-of-bounds access when the rescan process or the main loop passes the entry to the ext4 check dir entry() function, which reads de->rec len before validating the range.Recommendations
At the moment, there is no information about a newer version that contains a fix for this vulnerability.
Exploit
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Linux Kernel