CVE-2026-93055
Published Sep 17, 2026
Description
In the Linux kernel, the following vulnerability has been resolved: UDF symlink pathComponent header OOB read udf_symlink_filler() can enter udf_pc_to_char() with a partial pathComponent header. Validate that enough input remains for a complete pathComponent header before accessing it. Reject malformed symlink data that would otherwise make udf_pc_to_char() perform an out-of-bounds read.
Is your site exposed to CVE-2026-93055?
Run a free security scan — no signup, results in seconds.
References
Other References
https://git.kernel.org/stable/c/48b2a74317e15f93983c74a5a07245bc94a00d39
https://git.kernel.org/stable/c/57371e743398e0d485f0f7beede1ade41f812324
https://git.kernel.org/stable/c/8da8fd3df9fc14cf79ca3a3978d27ba067985111
https://git.kernel.org/stable/c/b21cb958292ee1e02eb305ff9de09f2f7edd551a
https://git.kernel.org/stable/c/d23eb7380d1594cda31a5dc8487dd2a5c8def8c7
https://git.kernel.org/stable/c/d9f49c8b55debf1512f912077b6c759cc8b6d2e0
https://git.kernel.org/stable/c/ee264227b656218bc1b257d8e4f83467f5f17723
https://git.kernel.org/stable/c/f44f5f795f1a56249821a05183347ea025855e31
Frequently Asked Questions
What is CVE-2026-93055? +
In the Linux kernel, the following vulnerability has been resolved:
UDF symlink pathComponent header OOB read
udf_symlink_filler() can enter udf_pc_to_char() with a partial pathComponent header.
Validate that enough input remains for a complete pathComponent header
before accessing it. Reject malformed symlink data that would otherwise
make udf_pc_to_char() perform an out-of-bounds read.
How do I check if I'm vulnerable to CVE-2026-93055? +
You can use Secably's free Website Scanner to check your website for known vulnerabilities. For infrastructure scanning, use the Port Scanner to identify exposed services that may be affected. Check the vendor advisories linked above for specific patch and version information.