VDB

CVE-2026-80591

CVE-2026-80591 PUBLISHED CVSS 7.8 HIGH

Reported by Linux · Published August 28, 2026

In the Linux kernel, the following vulnerability has been resolved: f2fs: fix listxattr handling of corrupted xattr entries Validate the xattr entry before reading its fields in f2fs_listxattr(). Return -EFSCORRUPTED when the entry is outside the valid xattr storage area instead of returning a successful partial result.

EPSS 0.13% · 2.8th percentile

Risk Scores

CVSS 3.1
7.8
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
EPSS Score
0.13%
2.8th percentile

Affected Products

VendorProductVersions
LinuxLinux688078e7f36c293dae25b338ddc9e0a2790f6e06, 688078e7f36c293dae25b338ddc9e0a2790f6e06, 688078e7f36c293dae25b338ddc9e0a2790f6e06
LinuxLinux5.5, 0, 5.10.261
linuxlinux_kernel5.5, 5.5, 5.5
LinuxLinux688078e7f36c293dae25b338ddc9e0a2790f6e06, 688078e7f36c293dae25b338ddc9e0a2790f6e06, 688078e7f36c293dae25b338ddc9e0a2790f6e06

Timeline

  • Aug 28, 2026 EPSS Score
  • Aug 28, 2026 Coalition ESS Score
  • Aug 28, 2026 CVE Published
  • Aug 29, 2026 EPSS Score
  • Aug 29, 2026 CVE Updated
  • Sep 1, 2026 Security Advisory

References

Open in Interactive Console →
$ Console Community · 100/wk Open console ›