CVE-2026-89674 | Linux Kernel up to 6.12.108/6.18.49/7.2.3 nfsd nfsd4_ff_encode_layoutget out-of-bounds write

SecurityVulns

A vulnerability was found in Linux Kernel up to 6.12.108/6.18.49/7.2.3. It has been declared as very critical. Impacted is the function nfsd4_ff_encode_layoutget of the component nfsd. Such manipulation leads to out-of-bounds write.

This vulnerability is listed as CVE-2026-89674. The attack may be performed from remote. There is no available exploit.

It is recommended to upgrade the affected component.VulDB Recent EntriesRead More