Linux vulnerability

In the Linux kernel, the following vulnerability has been resolved: [ceph] parse_longname(): strrchr() expects NUL-terminated string ... and parse_longname() is not guaranteed that. That's the reason why it uses kmemdup_nul() to build the argument for kstrtou64(); the problem is, kstrtou64() is not the only thing that need it. Just get a NUL-terminated copy of the entire thing and be done with that...

Published 22 Aug 2025Updated 14 Sep 20265 sources
CVSS 9.8

Record history

Record created from the first normalized source observation.
Metadata and source references refreshed.