CVE-2026-89575
Published: September 15, 2026Last modified: September 15, 2026
Description
In the Linux kernel, the following vulnerability has been resolved: dm raid1: reserve space for NUL-terminator in build_constructor_string() Reserve space for the termination NUL after the maximum 20 decimal digits of a long long value to avoid buffer overflow in sprintf().
Status
| Product | Release | Package | Status |
|---|---|---|---|
| Alpaquita Linux | 23 LTS | linux-lts | Vulnerable (6.1.182-r0) |
| 25 LTS | linux-lts | Vulnerable (6.12.103-r0) | |
| Stream | linux-lts | Vulnerable (6.18.46-r0) |
References
- https://git.kernel.org/stable/c/01a0276706c7b6fb758a8e2ff9cf221a3dfcae97
- https://git.kernel.org/stable/c/0a3657ebd6b517b60cdc5123894047616974e25b
- https://git.kernel.org/stable/c/1fcc9f9f35653c5ee1a8b144ec96ff3fc48532f7
- https://git.kernel.org/stable/c/35ba81c93fe7392c973af9881640180490e76f34
- https://git.kernel.org/stable/c/644140527ae494cedf3b5c0ecd16287deaea7a66
- https://git.kernel.org/stable/c/73c37fe54cd056d07461b142ab0b8b81e1ef6ad8
- https://git.kernel.org/stable/c/7b035983b895db3ae01d9855963d42541db42125
- https://git.kernel.org/stable/c/f79b53ca3a68a46c6fc3b30b148d1dfb1b33ea8b