Vulnerability Description
In the Linux kernel, the following vulnerability has been resolved: ntfs: serialize volume label accesses Protect vol->volume_label with a mutex and snaphost the label before copy_to_user. This prevent a use-after-free when FS_IOC_SETFSLABEL replaces the vol->volume_label and FS_IOC_GETTSLABEL reads it concurrently.
CVSS Score
HIGH
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Linux | Linux Kernel | >= 7.1, < 7.1.3 |
Related Weaknesses (CWE)
References
- https://git.kernel.org/stable/c/acd744019460bad22e43d4569a502f9c88d331aePatch
- https://git.kernel.org/stable/c/e9e50ce4f13dc721014af622613409455c734942Patch
FAQ
What is CVE-2026-63793?
CVE-2026-63793 is a vulnerability with a CVSS score of 7.8 (HIGH). In the Linux kernel, the following vulnerability has been resolved: ntfs: serialize volume label accesses Protect vol->volume_label with a mutex and snaphost the label before copy_to_user. This prev...
How severe is CVE-2026-63793?
CVE-2026-63793 has been rated HIGH with a CVSS base score of 7.8/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2026-63793?
Check the references section above for vendor advisories and patch information. Affected products include: Linux Linux Kernel.