Bug 2540565 (CVE-2026-93816) - CVE-2026-93816 kernel: f2fs: validate inline dentry name lengths before conversion
Summary: CVE-2026-93816 kernel: f2fs: validate inline dentry name lengths before conve...
Keywords:
Status: NEW
Alias: CVE-2026-93816
Product: Security Response
Classification: Other
Component: vulnerability
Version: unspecified
Hardware: All
OS: Linux
medium
medium
Target Milestone: ---
Assignee: Product Security DevOps Team
QA Contact:
URL:
Whiteboard:
Depends On:
Blocks:
TreeView+ depends on / blocked
 
Reported: 2026-09-24 17:17 UTC by OSIDB Bzimport
Modified: 2026-09-28 14:10 UTC (History)
17 users (show)

Fixed In Version:
Clone Of:
Environment:
Last Closed:
Embargoed:


Attachments (Terms of Use)

Description OSIDB Bzimport 2026-09-24 17:17:36 UTC
In the Linux kernel, the following vulnerability has been resolved:

f2fs: validate inline dentry name lengths before conversion

Inline dentry conversion copies names out of the inline dentry area
before checking that each recorded name length fits in the available
filename slots.

A corrupted image can therefore make the conversion path read past
the inline filename storage while building the regular dentry block.

Validate each inline dentry name length against the inline filename
area before copying it.


Note You need to log in before you can comment on or make changes to this bug.