← All Advisories

CVE-2026-97548

Last refreshed2026-10-03

Status: UPDATED  |  Advisory ID: CVE-2026-97548

Key Details

CVECVE-2026-97548
CVSS Score / Version7.8 (High) / CVSS v3.1
Updated2026-09-25
CVSS VectorCVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
CVSS Proseattack vector is local; attack complexity is low; privileges required is none; user interaction is required; scope is unchanged; confidentiality impact is high; integrity impact is high; availability impact is high.
Affected productsLinux Linux

Affected Products, Subsystems & Sectors

VendorProductAffected VersionsPatch Status
LinuxLinux
SubsystemsGeneral OT
SectorsMultiple

What to Know

In the Linux kernel, the following vulnerability has been resolved:

xfs: fix the rtrmap and rtrefcount _maxlevels_ondisk functions

The _maxlevels_ondisk functions are used to compute the size of

in-memory btree cursors for each btree type. Unfortunately, LOLLM

noticed that the rtrmap and rtrefcount versions of these functions

forget to account for the inode root, which means that we could access

beyond the end of the cursor given a sufficiently large btree. Fix

this. (NVD)

What to Do

Monitor Linux's web page for any future patch releases.

References

SourceReference
NVDhttps://nvd.nist.gov/vuln/detail/CVE-2026-97548
CVEhttps://www.cve.org/CVERecord?id=CVE-2026-97548