CVE-2026-52962
Gravedad CVSS v3.1:
ALTA
Tipo:
CWE-787
Escritura fuera de límites
Fecha de publicación:
24/06/2026
Última modificación:
14/07/2026
Descripción
*** Pendiente de traducción *** In the Linux kernel, the following vulnerability has been resolved:<br />
<br />
ceph: fix a buffer leak in __ceph_setxattr()<br />
<br />
The old_blob in __ceph_setxattr() can store<br />
ci->i_xattrs.prealloc_blob value during the retry.<br />
However, it is never called the ceph_buffer_put()<br />
for the old_blob object. This patch fixes the issue of<br />
the buffer leak.
Impacto
Puntuación base 3.x
7.80
Gravedad 3.x
ALTA
Productos y versiones vulnerables
| CPE | Desde | Hasta |
|---|---|---|
| cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:* | 4.4.192 (incluyendo) | 4.5 (excluyendo) |
| cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:* | 4.9.192 (incluyendo) | 4.10 (excluyendo) |
| cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:* | 4.14.143 (incluyendo) | 4.15 (excluyendo) |
| cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:* | 4.19.72 (incluyendo) | 4.20 (excluyendo) |
| cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:* | 5.2.14 (incluyendo) | 5.3 (excluyendo) |
| cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:* | 5.3.1 (incluyendo) | 5.10.258 (excluyendo) |
| cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:* | 5.11 (incluyendo) | 5.15.209 (excluyendo) |
| cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:* | 5.16 (incluyendo) | 6.1.175 (excluyendo) |
| cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:* | 6.2 (incluyendo) | 6.6.141 (excluyendo) |
| cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:* | 6.7 (incluyendo) | 6.12.91 (excluyendo) |
| cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:* | 6.13 (incluyendo) | 6.18.33 (excluyendo) |
| cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:* | 6.19 (incluyendo) | 7.0.10 (excluyendo) |
| cpe:2.3:o:linux:linux_kernel:5.3:-:*:*:*:*:*:* | ||
| cpe:2.3:o:linux:linux_kernel:5.3:rc6:*:*:*:*:*:* | ||
| cpe:2.3:o:linux:linux_kernel:5.3:rc7:*:*:*:*:*:* |
Para consultar la lista completa de nombres de CPE con productos y versiones, ver esta página
Referencias a soluciones, herramientas e información
- https://git.kernel.org/stable/c/3fa13ceefbc5f36131110342743994cb3de80637
- https://git.kernel.org/stable/c/4bfdcefdaa6092a06cacd59389c7756b36e6de8c
- https://git.kernel.org/stable/c/521e5aba857fd267624892c8dd6295f22ce0267e
- https://git.kernel.org/stable/c/5d3cc36b4e77a27ce7b686b7c59c7072bcb3fa8e
- https://git.kernel.org/stable/c/7d3e8d2d648d5f0df29b4710246680f47695fe94
- https://git.kernel.org/stable/c/bc7abce4460e490dcb579eec770f175b150b685f
- https://git.kernel.org/stable/c/d0cb994605c84a159c1d00d72cdc8583c321ef95
- https://git.kernel.org/stable/c/ecf94823c5c6a20790bb76ed2816822b0beb0c22



