cbcvebase.
CVE-2026-53309
published 2026-06-26

CVE-2026-53309: In the Linux kernel, the following vulnerability has been resolved: ocfs2/dlm: fix off-by-one in dlm_match_regions() region comparison The local-vs-remote…

PriorityP346critical9.8CVSS 3.1
AVNACLPRNUINSUCHIHAH
EPSS
0.40%
32.5th percentile
In the Linux kernel, the following vulnerability has been resolved: ocfs2/dlm: fix off-by-one in dlm_match_regions() region comparison The local-vs-remote region comparison loop uses '<=' instead of '<', causing it to read one entry past the valid range of qr_regions. The other loops in the same function correctly use '<'. Fix the loop condition to use '<' for consistency and correctness.

Affected

16 ranges
VendorProductVersion rangeFixed in
linuxlinux
linuxlinux>= ea2034416b54700e30371f2ad6517cbb94674083 < 760ab35040aca8399021fdb9ff1db1089feb7194760ab35040aca8399021fdb9ff1db1089feb7194
linuxlinux>= ea2034416b54700e30371f2ad6517cbb94674083 < c60a2710b73838d250cda57344c049b89abc5d52c60a2710b73838d250cda57344c049b89abc5d52
linuxlinux>= ea2034416b54700e30371f2ad6517cbb94674083 < 2a0673836f019e7c032acbf48d022d5ccf02a8452a0673836f019e7c032acbf48d022d5ccf02a845
linuxlinux>= ea2034416b54700e30371f2ad6517cbb94674083 < 819d8ebad3200a53de99bd7e297bc428e41ced54819d8ebad3200a53de99bd7e297bc428e41ced54
linuxlinux>= ea2034416b54700e30371f2ad6517cbb94674083 < d5403ae28085761d58b555645bc7d5feadb10073d5403ae28085761d58b555645bc7d5feadb10073
linuxlinux>= ea2034416b54700e30371f2ad6517cbb94674083 < 1fb7f356547d9688822315cd2b205ff0bd5429b41fb7f356547d9688822315cd2b205ff0bd5429b4
linuxlinux>= ea2034416b54700e30371f2ad6517cbb94674083 < 426cd8eedac89b86148d4478990eeef16e8a2520426cd8eedac89b86148d4478990eeef16e8a2520
linuxlinux>= ea2034416b54700e30371f2ad6517cbb94674083 < 01b61e8dda9b0fdb0d4cda43de25f4e390554d7b01b61e8dda9b0fdb0d4cda43de25f4e390554d7b
linuxlinux_kernel>= 2.6.37 < 5.10.2585.10.258
linuxlinux_kernel>= 5.11 < 5.15.2095.15.209
linuxlinux_kernel>= 5.16 < 6.1.1756.1.175
linuxlinux_kernel>= 6.13 < 6.18.336.18.33
linuxlinux_kernel>= 6.19 < 7.0.107.0.10
linuxlinux_kernel>= 6.2 < 6.6.1416.6.141
linuxlinux_kernel>= 6.7 < 6.12.916.12.91

CVSS provenance

nvdv3.19.8CRITICALCVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
vendor_redhat9.8CRITICAL
Stop checking back — get the weekly exploitation signal.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.