CVE-2026-72204

Summary

In the Linux kernel, the following vulnerability has been resolved:

ntfs: centalize $INDEX_ROOT header validation

Add a dedicated helper to perform stricter validation of $INDEX_ROOT and use it for both directory inodes and named index inodes. This keeps the root size and header geometry checks consistent across both read paths.

Affected Software

VendorProductVersion RangeStatus
LinuxLinux1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 < b06730c6af58d3569883f8dd7c36a90aba5ecc0aaffected
LinuxLinux1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 < 8b97b302f553a480fb76d2afd53cd6c0635a9dcdaffected
LinuxLinux0 < 7.1.5affected
LinuxLinux7.1.5 <= 7.1.*unaffected
LinuxLinux7.2 <= *unaffected

Weaknesses

References