CVE-2026-89575

UnknownEPSS 0.22%

Last modified

CVE-2026-89575 is a vulnerability of currently unknown severity. In the Linux kernel, the following vulnerability has been resolved: dm raid1: reserve space for NUL-terminator in build_constructor_string() Reserve space for the termination NUL after the maximum 20 decimal digits of a long long value to avoid buffer overflow in sprintf().. EPSS estimates a 0.22% chance of exploitation in the next 30 days.

Description

In the Linux kernel, the following vulnerability has been resolved: dm raid1: reserve space for NUL-terminator in build_constructor_string() Reserve space for the termination NUL after the maximum 20 decimal digits of a long long value to avoid buffer overflow in sprintf().

Metrics

EPSS Probability
0.22%

12.1th percentile

Probability of exploitation in the next 30 days. Learn more

Affected Software

Source: CNA advisory (CVE.org). NVD analysis pending.

VendorProductVersions
LinuxLinux>= f5db4af466e2dca0fe822019812d586ca910b00c, < 35ba81c93fe7392c973af9881640180490e76f34; >= f5db4af466e2dca0fe822019812d586ca910b00c, < 1fcc9f9f35653c5ee1a8b144ec96ff3fc48532f7; >= f5db4af466e2dca0fe822019812d586ca910b00c, < 7b035983b895db3ae01d9855963d42541db42125; >= f5db4af466e2dca0fe822019812d586ca910b00c, < 01a0276706c7b6fb758a8e2ff9cf221a3dfcae97; >= f5db4af466e2dca0fe822019812d586ca910b00c, < 0a3657ebd6b517b60cdc5123894047616974e25b; >= f5db4af466e2dca0fe822019812d586ca910b00c, < 644140527ae494cedf3b5c0ecd16287deaea7a66; >= f5db4af466e2dca0fe822019812d586ca910b00c, < f79b53ca3a68a46c6fc3b30b148d1dfb1b33ea8b; >= f5db4af466e2dca0fe822019812d586ca910b00c, < 73c37fe54cd056d07461b142ab0b8b81e1ef6ad8
LinuxLinux2.6.31

References

Timeline

Published
Last Modified
Status
Received

Frequently Asked Questions

What is CVE-2026-89575?
In the Linux kernel, the following vulnerability has been resolved: dm raid1: reserve space for NUL-terminator in build_constructor_string() Reserve space for the termination NUL after the maximum 20 decimal digits of a long long value to avoid buffer overflow in sprintf().
How severe is CVE-2026-89575?
Severity scoring for CVE-2026-89575 is pending analysis. The EPSS model estimates a 0.22% probability of exploitation in the next 30 days.
How do I fix CVE-2026-89575?
Check the vendor references and advisories linked above for patched versions and mitigation guidance. You can also run a Strix scan to test if your systems are affected.

How Strix Helps

Related CVEs from 2026

Are you affected by CVE-2026-89575?

Run a free Strix scan to check your systems for this vulnerability.

Scan your code now

Source: NVD / NIST