REDHAT-BUG-2514626: Medium severity libdm-config vulnerability
Published Aug 12, 2026
·Updated
The libdm configuration file parser in libdm-config.c uses recursive descent parsing with no depth limit. A crafted LVM metadata configuration with deeply nested structures causes uncontrolled recursion, exhausting the stack and crashing any LVM command that reads the metadata.
Affected Software
1 affected component
libdm-config
Event History
Aug 12, 2026
Data Sourced
via Red Hat·02:04 PM
DescriptionSeverityAffected Software
Frequently Asked Questions
1
What is the severity of REDHAT-BUG-2514626?
The severity of REDHAT-BUG-2514626 is medium, rated at 4.
2
How does REDHAT-BUG-2514626 affect LVM commands?
REDHAT-BUG-2514626 causes uncontrolled recursion due to deeply nested LVM metadata configurations, leading to stack exhaustion and crashes of LVM commands.
3
What software is affected by REDHAT-BUG-2514626?
The vulnerability affects the libdm-config software component.
4
How can I mitigate the impact of REDHAT-BUG-2514626?
To mitigate REDHAT-BUG-2514626, avoid using LVM metadata configurations with deeply nested structures.
5
When was REDHAT-BUG-2514626 published?
REDHAT-BUG-2514626 was published on August 12, 2026.