← Back to CVE search

CVE-2026-63793

Linux Kernel

Description

In the Linux kernel, the following vulnerability has been resolved: ntfs: serialize volume label accesses Protect vol->volume_label with a mutex and snaphost the label before copy_to_user. This prevent a use-after-free when FS_IOC_SETFSLABEL replaces the vol->volume_label and FS_IOC_GETTSLABEL reads it concurrently.

CVSS 7.8EPSS 0.121%Risk 0.79
View source
Published
2026-07-19 12:16:51
Affected versions
unknown
Type
Kernel
Last modified
2026-07-30 17:41:21
Vector
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Operating systems
Linux