What is CVE-2026-68448?
The vulnerability CVE-2026-68448 in the Linux kernel exists in the OverlayFS (ovl) subsystem, where access to the source file in copy_file_range() operations is checked using incorrect credentials. This may allow an unauthorized user to access sensitive files by leveraging the source mounter's credentials. Affected systems should be updated with the patched kernel.
Azərbaycanca: Linux kernel-də aşkarlanan CVE-2026-68448 zəifliyi "ovl" (OverlayFS) alt sistemində copy_file_range() əməliyyatı zamanı mənbə fayla girişin səhv kredensiallarla yoxlanması ilə bağlıdır. Bu, icazəsiz istifadəçinin mənbə mount-un kredensiallarından istifadə edərək həssas fayllara giriş əldə etməsinə səbəb ola bilər. Təsirə məruz qalan sistemlərdə kernel-i yeniləmək tövsiyə olunur.
Related CVEs
link basis: same weakness class CWE-863
FAQ2
Which subsystem of the Linux kernel is affected by CVE-2026-68448?
This vulnerability exists in the "ovl" (OverlayFS) subsystem.
How can unauthorized access be obtained using CVE-2026-68448?
During the copy_file_range() operation, access to the source file is checked using incorrect credentials, potentially allowing a user to access sensitive files by leveraging the source mounter's credentials.
See also6
This explainer is AI-written from source data — skopnix's own reporting on this CVE; CVSS scores, vendors and versions are never invented. See NVD for the official record.