LIVE · cybersecurity feed
Live wire
cve recordhigh

CVE-2026-71220

Published
CVSS7
Severityhigh
WeaknessCWE-787
ExploitedNot in CISA KEV

CVSS:3.1/AV:L/AC:H/PR:N/UI:R/S:U/C:H/I:H/A:H

Description

A stack out-of-bounds write vulnerability was found in gfs2-utils. In gfs2_edit, the di_height field from on-disk inode metadata is used as an array index without bounds checking, causing a stack buffer overflow that may lead to arbitrary code execution when processing crafted GFS2 filesystem images.

References

← Back to the CVE Tracker

Our coverage of CVE-2026-71220

No stories yet. This page updates automatically when we publish reporting that references CVE-2026-71220.