Monitor vulnerabilities like this one. Sign up free to get alerted when software you use is affected.
9.8

CVE-2026-72201: Linux Kernel: Unvalidated Index Entries in NTFS File System

CVE-2026-72201 · published 8 days ago
Summary

The Linux kernel's NTFS file system does not immediately check index entries for validity when reading from disk. This can lead to potential security risks if not addressed. To fix this issue, updates to the Linux kernel are available to validate index entries on reading.

What to do
  • Update linux linux to version e2b95d3adb558ddd5685f9e072ec8661d57ee3a9 or later.
Affected software
VendorProductAffected versions
linux linux < e2b95d3adb558ddd5685f9e072ec8661d57ee3a9
7.1
Original advisory text
ntfs: validate index entries on reading
In the Linux kernel, the following vulnerability has been resolved:

ntfs: validate index entries on reading

Validate index entries immediately after reading an index root or index
block from disk. This eliminates repeated checks in lookup and readdir,
and reduce the risk of missing checks in those paths.
Severity
9.8 Critical
Exploitation
EPSS <1%
Timeline
Published15 Aug 2026
Updated19 Aug 2026
First seen15 Aug 2026
Sources
CVE-2026-72201 · MITRE
Monitor software like this
Free during beta