LIVE · cybersecurity feed
Live wire
cve recordhigh

CVE-2026-78409

Published
CVSS7
Severityhigh
WeaknessCWE-59
ExploitedNot in CISA KEV

CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H

Description

The X-mount.subdir option uses a detached-tree fast path on Linux 6.15 and later and passes the configured subdirectory to open_tree() with AT_SYMLINK_NOFOLLOW. That flag does not stop intermediate symlink traversal or keep resolution inside the newly mounted filesystem. A local unprivileged user with an fstab-authorized X-mount.subdir entry can attach a host path at the intended mountpoint.

References

← Back to the CVE Tracker

Our coverage of CVE-2026-78409

No stories yet. This page updates automatically when we publish reporting that references CVE-2026-78409.