CVE-2026-80591: f2fs: fix listxattr handling of corrupted xattr entries
Published Aug 28, 2026
·Updated
In the Linux kernel, the following vulnerability has been resolved:
f2fs: fix listxattr handling of corrupted xattr entries
Validate the xattr entry before reading its fields in f2fslistxattr(). Return -EFSCORRUPTED when the entry is outside the valid xattr storage area instead of returning a successful partial result.
Event History
Aug 28, 2026
CVE Published
via MITRE·06:48 AM
Data Sourced
via MITRE·06:48 AM
Description
Frequently Asked Questions
1
What condition triggers the issue?
The issue is triggered when f2fs_listxattr() processes a corrupted extended-attribute entry that lies outside the valid xattr storage area.
2
What behavior does the fix change?
The fix validates an xattr entry before reading its fields. If the entry is outside the valid xattr storage area, the operation returns -EFSCORRUPTED rather than a successful partial result.