What is CVE-2026-64267?
This vulnerability in the Linux kernel's FUSE subsystem involves a 32-bit prune notification count wrap, leading to improper validation of `FUSE_NOTIFY_PRUNE` messages from the FUSE daemon on 32-bit kernels. It can cause security issues due to the count overflow, and users on affected 32-bit systems should apply the kernel patch immediately.
Azərbaycanca: Linux kernel-də FUSE alt sistemində aşkar edilmiş bu boşluq '32-bit prune notification count wrap' adlanır və xüsusilə 32-bit nüvələrdə `notification count` dəyərinin daşması (wrap) ilə bağlıdır. Bu, FUSE demonundan gələn `FUSE_NOTIFY_PRUNE` mesajlarının yanlış validasiyasına səbəb olaraq potensial təhlükəsizlik problemləri yarada bilər. 32-bit Linux kernel istifadəçiləri təcili olaraq yenilənməlidir.
Related CVEs
link basis: same weakness class CWE-190
FAQ2
Which operating system is targeted by the CVE-2026-64267 vulnerability?
This vulnerability targets the FUSE subsystem specifically in 32-bit Linux kernels.
What is the primary cause of the CVE-2026-64267 vulnerability?
The root cause is the improper validation of FUSE_NOTIFY_PRUNE messages due to a notification count wrap on 32-bit kernels.
See also6
This explainer is AI-written from source data — skopnix's own reporting on this CVE; CVSS scores, vendors and versions are never invented. See NVD for the official record.