CVE-2026-43075
mediumEPSS Score
0.0%
Exploitation probability in 30 days
Top 95% most likely to be exploited
Vulnerability Report
Generated by CyberWatcher
Description
A flaw was found in the Linux kernel's ocfs2 filesystem component. This vulnerability allows a local attacker, by mounting a specially crafted and corrupted ocfs2 filesystem on a loop device, to trigger an out-of-bounds write. This occurs because the system incorrectly trusts the `id_count` field from the on-disk filesystem, which can lead to memory corruption. The most significant consequence is potential system instability or denial of service.
CWE
CWE-1284Affected Products
Red Hat Enterprise Linux 10Red Hat Enterprise Linux 6Red Hat Enterprise Linux 7Red Hat Enterprise Linux 8Red Hat Enterprise Linux 9