CVE-2026-46294: In the Linux kernel, the following vulnerability has been resolved: dm: fix a buffer overflow in ioctl processing Tony
infovulnerability
security
Summary
A buffer overflow vulnerability was found in the Linux kernel's device mapper ioctl (input/output control, a way for programs to send commands to kernel drivers) processing function, where pointer alignment could cause data to be written past the end of a buffer. However, the vulnerability has no practical security impact because only the root user can trigger it, and the libraries that normally communicate with device mapper use properly aligned buffer sizes that prevent the overflow from occurring.
Vulnerability Details
EPSS (30-day exploit probability)
EPSS: 0.0%
Disclosure Date
June 8, 2026
Classification
Attack SophisticationModerate
Monthly digest — independent AI security research
Original source: https://nvd.nist.gov/vuln/detail/CVE-2026-46294
First tracked: June 9, 2026 at 08:09 AM
Classified by LLM (prompt v3) · confidence: 95%