Answer in brief
CVE-2026-72194 records a Critical severity (CVSS 9.8) vulnerability in fs/ntfs3: add depth limit to indx_find_buffer to prevent stack overflow. The current sources do not mark it as known exploited. The current feed maps Linux/Linux (generic), Linux/Linux (generic). Check affected ranges and fixed versions before updating.
Analysis pending evidence review
HOL Guard separates source facts from reviewed analysis. See the methodology.
CVSS is 9.8. The current sources do not mark it as known exploited. Treat this as a source-backed prioritization signal, not a statement about your environment.
Analysis status
Analysis pending evidence review
Factual feed record only; HOL analysis is not approved for indexing. Read the methodology.
The current feed maps Linux/Linux (generic), Linux/Linux (generic). Check affected ranges and fixed versions before updating.
| Package | Affected range | Fixed version |
|---|---|---|
| Linux/Linuxgeneric | >=82cae269cfa953032fbb8980a7d554d60fb00b17 <99031d4f63c785d2a985b6a4c64c4256f7117052 || >=82cae269cfa953032fbb8980a7d554d60fb00b17 <65357a81f64cb3fbe13b4b937586755e4b3a072f || >=82cae269cfa953032fbb8980a7d554d60fb00b17 <96fb64f9da86fd2dbd78fbe9d9e41ae27e12ce34 || >=82cae269cfa953032fbb8980a7d554d60fb00b17 <78612f478f9fadcec4f9b3b089970da67ffb47e9 || >=82cae269cfa953032fbb8980a7d554d60fb00b17 <908c9243ba309997b73cbda3e4c563d0fb345ee9 || >=82cae269cfa953032fbb8980a7d554d60fb00b17 <fdf50c788e0991e42a187ff75479a0df7fb752f1 || >=82cae269cfa953032fbb8980a7d554d60fb00b17 <1ebd684b8f627f75bc3e03f8b2ad8400fd1f02cd | 99031d4f63c785d2a985b6a4c64c4256f7117052, 65357a81f64cb3fbe13b4b937586755e4b3a072f, 96fb64f9da86fd2dbd78fbe9d9e41ae27e12ce34, 78612f478f9fadcec4f9b3b089970da67ffb47e9, 908c9243ba309997b73cbda3e4c563d0fb345ee9, fdf50c788e0991e42a187ff75479a0df7fb752f1, 1ebd684b8f627f75bc3e03f8b2ad8400fd1f02cd |
| Linux/Linuxgeneric | 5.15 | Not reported |
Published upstream
Aug 15, 2026
Evidence: source:cvelist:source_dates:source-dates:recordSource modified
Aug 17, 2026
Evidence: source:cvelist:source_dates:source-dates:recordFirst seen by HOL
Aug 15, 2026
In the Linux kernel, the following vulnerability has been resolved: fs/ntfs3: add depth limit to indx_find_buffer to prevent stack overflow indx_find_buffer() recursively descends the B+ tree index with no depth limit. A crafted NTFS image with circular index node references causes unbounded recursion, overflowing the kernel stack and panicking the system. This is reachable by mounting a malicious NTFS filesystem (e.g. from a USB drive via desktop automount) and deleting a file whose index entry triggers the rebalancing fallback path in indx_delete_entry(). Add a depth parameter and bail out with -EINVAL when it reaches the fnd->nodes array bound, matching the constraint already enforced by fnd_push() in indx_find(). The related function indx_find() was previously patched for a similar infinite-loop issue (commit 1732053c8a6b), but indx_find_buffer() was missed.
Quoted source text, attributed separately from HOL analysis.