Audit Linux privileges now to limit compromise, escalation, and system-wide damage. Review Linux Privileges×

Alerts This Week
Warning Icon 1 442
Alerts This Week
Warning Icon 1 442

Mageia libnfs Important Integer Overflow Vuln CVE-2026-53689 2026-0299

mageia
Calendar Grey July 25, 2026
Scroller Mageia
The Mageia security update addresses a critical integer overflow issue in libnfs affecting versions prior to 55c18ea.
Mageia updates released for versions 10 and 9 address CVE-2026-53689, a security vulnerability in libnfs that allows for integer overflow during connections with malicious NFS serv...

Summary

Description: The updated packages fix a security vulnerability: libnfs through 6.0.2 before 55c18ea does not validate a string size, leading to an integer overflow during a connection to a crafted NFS server. This occurs in libnfs_zdr_string in lib/libnfs-zdr.c. (CVE-2026-53689)

References

- https://bugs.mageia.org/show_bug.cgi?id=35753

- https://ubuntu.com/security/notices/USN-8464-1

- https://www.cve.org/CVERecord?id=CVE-2026-53689

Resolution

SRPMS

- 10/core/libnfs-6.0.2-2.1.mga10

- 9/core/libnfs-5.0.2-1.1.mga9

Severity
important
Lowest
Low
Medium
High
Critical

Publication date: 25 Jul 2026 
URL: https://advisories.mageia.org/MGASA-2026-0299.html
Type: security
CVE: CVE-2026-53689

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.