THREATOPS
THREAT OPSThreat News › [NVD] CVE-2026-71222 (MEDIUM 5.3) — A heap out-of-bounds read vulnerability was found in gfs2-utils. The ea_num_ptrs field from on-disk extended attribute metadata is consumed without bounds validation, causing a heap buffer over-read that may disclose sensitive memory contents or cause a crash when processing craf

[NVD] CVE-2026-71222 (MEDIUM 5.3) — A heap out-of-bounds read vulnerability was found in gfs2-utils. The ea_num_ptrs field from on-disk extended attribute metadata is consumed without bounds validation, causing a heap buffer over-read that may disclose sensitive memory contents or cause a crash when processing craf

mednvdPublished 2026-09-03

CVE-2026-71222 CVSS: 5.3 MEDIUM Published: 2026-09-03T13:06:03.050

A heap out-of-bounds read vulnerability was found in gfs2-utils. The ea_num_ptrs field from on-disk extended attribute metadata is consumed without bounds validation, causing a heap buffer over-read that may disclose sensitive memory contents or cause a crash when processing crafted GFS2 filesystem images.

Indicators of compromise

Original source: https://nvd.nist.gov/vuln/detail/CVE-2026-71222