CVE-2026-98057

high

Description

In the Linux kernel, the following vulnerability has been resolved: ring-buffer: Add checking nr_subbufs to persistent ring buffer validation Sashiko reported that the code was using meta->nr_subbufs without making sure that it matched the nr_pages + 1 on data that was assuming the two were the same. Add a check to the persistent ring buffer validation code to make sure that the saved nr_subbufs matches what we expect.

References

https://git.kernel.org/stable/c/f0467190e6a9fc61e343c8064ef16aad513788c3

https://git.kernel.org/stable/c/6c001a62c34f13fe1c6a24304c289b387d9e697d

https://git.kernel.org/stable/c/69d502457e3f76142f7fcf6e2625e80e0ce8a60f

Details

Source: Mitre, NVD

Published: 2026-09-25

Updated: 2026-09-25

Risk Information

CVSS v2

Base Score: 7.2

Vector: CVSS2#AV:L/AC:L/Au:N/C:C/I:C/A:C

Severity: High

CVSS v3

Base Score: 7.8

Vector: CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H

Severity: High

EPSS

EPSS: 0.00166