Skip to content
CVSS 9.8 · CRITICAL

CVE-2026-72201Critical vulnerability in Linux NTFS driver

In the Linux kernel, the following vulnerability has been resolved: ntfs: validate index entries on reading Validate index entries immediately after reading an index root or index block from disk. This eliminates repeated checks in lookup and readdir, and reduce the risk of missing checks in those paths.

View on NVD

Analysis

Se ha corregido una vulnerabilidad de severidad critica (CVSS 9.8) en el controlador NTFS del kernel de Linux. La falla involucra una validación insuficiente al leer entradas de índice, lo que podría permitir el compromiso del sistema al procesar sistemas de archivos maliciosos.

Relevant roles

LinuxBackendDockerKubernetesC

Severity

Score: 9.8(CRITICAL)
Vector: CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
AV: NETWORK
AC: LOW
PR: NONE
UI: NONE
S: UNCHANGED
C: HIGH
I: HIGH
A: HIGH

EPSS

Probability of exploitation (next 30 days): 0.0052 (0.5%)
Percentile: 41.5%
EPSS: 2026-08-17

Technical description

In the Linux kernel, the following vulnerability has been resolved: ntfs: validate index entries on reading Validate index entries immediately after reading an index root or index block from disk. This eliminates repeated checks in lookup and readdir, and reduce the risk of missing checks in those paths.

Published: 8/15/2026, 6:21:38 AM
Last modified: 8/18/2026, 7:16:53 AM

References

HomeEventsBlogResourcesCoursesTeam