CVE-2026-89575

Source
https://cve.org/CVERecord?id=CVE-2026-89575
Import Source
https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2026-89575.json
JSON Data
https://api.osv.dev/v1/vulns/CVE-2026-89575
Downstream
Published
2026-09-11T19:44:43Z
Modified
2026-09-13T03:47:19Z
Summary
dm raid1: reserve space for NUL-terminator in build_constructor_string()
Details

In the Linux kernel, the following vulnerability has been resolved:

dm raid1: reserve space for NUL-terminator in build_constructor_string()

Reserve space for the termination NUL after the maximum 20 decimal digits of a long long value to avoid buffer overflow in sprintf().

Database specific
{
    "cna_assigner": "Linux",
    "osv_generated_from": "https://github.com/CVEProject/cvelistV5/tree/main/cves/2026/89xxx/CVE-2026-89575.json"
}
References

Affected packages

Git / git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git

Affected ranges

Type
GIT
Repo
https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git
Events
Introduced
f5db4af466e2dca0fe822019812d586ca910b00c
Fixed
0a3657ebd6b517b60cdc5123894047616974e25b
Fixed
644140527ae494cedf3b5c0ecd16287deaea7a66
Fixed
f79b53ca3a68a46c6fc3b30b148d1dfb1b33ea8b
Fixed
73c37fe54cd056d07461b142ab0b8b81e1ef6ad8

Database specific

source
"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2026-89575.json"

Linux / Kernel

Package

Name
Kernel

Affected ranges

Type
ECOSYSTEM
Events
Introduced
2.6.31
Fixed
6.12.109
Type
ECOSYSTEM
Events
Introduced
6.13.0
Fixed
6.18.50
Type
ECOSYSTEM
Events
Introduced
6.19.0
Fixed
7.2.4

Database specific

source
"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2026-89575.json"