THREATOPS
THREAT OPSThreat News › [NVD] CVE-2026-64360 (MEDIUM 5.5) — In the Linux kernel, the following vulnerability has been resolved: hfs/hfsplus: zero-initialize buffer in hfs_bnode_read hfs_bnode_read() can return early without writing to the output buffer when is_bnode_offset_valid() fails or when check_and_correct_requested_ length() corr

[NVD] CVE-2026-64360 (MEDIUM 5.5) — In the Linux kernel, the following vulnerability has been resolved: hfs/hfsplus: zero-initialize buffer in hfs_bnode_read hfs_bnode_read() can return early without writing to the output buffer when is_bnode_offset_valid() fails or when check_and_correct_requested_ length() corr

lownvdPublished 2026-07-25

CVE-2026-64360 CVSS: 5.5 MEDIUM Published: 2026-07-25T10:17:18.530

In the Linux kernel, the following vulnerability has been resolved:

hfs/hfsplus: zero-initialize buffer in hfs_bnode_read

hfs_bnode_read() can return early without writing to the output buffer when is_bnode_offset_valid() fails or when check_and_correct_requested_ length() corrects the length to zero. Callers such as hfs_bnode_

Indicators of compromise

Original source: https://nvd.nist.gov/vuln/detail/CVE-2026-64360