CVE-2026-46070

HIGH EPSS 2.6%
Published May 27, 20261mo ago · Modified Jun 17, 20261w ago
7.1 CVSS 3.1
High
Find Similar
Published May 27, 2026 1mo ago
Last Modified Jun 17, 2026 1w ago

Description

In the Linux kernel, the following vulnerability has been resolved: md/raid5: validate payload size before accessing journal metadata r5c_recovery_analyze_meta_block() and r5l_recovery_verify_data_checksum_for_mb() iterate over payloads in a journal metadata block using on-disk payload size fields without validating them against the remaining space in the metadata block. A corrupted journal contains payload sizes extending beyond the PAGE_SIZE boundary can cause out-of-bounds reads when accessing payload fields or computing offsets. Add bounds validation for each payload type to ensure the full payload fits within meta_size before processing.

CVSS Details

Base Score
7.1
Exploitability
1.8
Impact
5.2
Vector string
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:H
Attack Vector Local
Attack Complexity Low
Privileges Required Low
User Interaction None
Scope Unchanged
Confidentiality High
Integrity None
Availability High

Threat Intelligence

EPSS Exploit Probability
2.6% percentile
Exploit & Patch Status
No Known Exploit
No Patch Available

References 8

  • git.kernel.org https://git.kernel.org/stable/c/28d3ff7109c66e99dc1b7cddacb5c760849620ef
  • git.kernel.org https://git.kernel.org/stable/c/33698bd1b2db9764a29df7751533d33967ff5c98
  • git.kernel.org https://git.kernel.org/stable/c/406aa86394ead347c47428fb51b6359bdaa2257d
  • git.kernel.org https://git.kernel.org/stable/c/73ce72edd113374801045924d4417199963f73a3
  • git.kernel.org https://git.kernel.org/stable/c/b0cc3ae97e893bf54bbce447f4e9fd2e0b88bff9
  • git.kernel.org https://git.kernel.org/stable/c/c3a1cf78bd1bbb51b2cc5189b4743056553c1e0e
  • git.kernel.org https://git.kernel.org/stable/c/c96c6f01d84b5c67db1bf1cc8591c0b7146826fc
  • git.kernel.org https://git.kernel.org/stable/c/ef4851d8324fd978ca1ff9ec76a275438f887743

Remediation

No remediation data recorded yet

Check vendor advisories and the NVD entry for patch availability.