Description
In the Linux kernel, the following vulnerability has been resolved:

dlm: validate length in dlm_search_rsb_tree

The len parameter in dlm_dump_rsb_name() is not validated and comes
from network messages. When it exceeds DLM_RESNAME_MAXLEN, it can
cause out-of-bounds write in dlm_search_rsb_tree().

Add length validation to prevent potential buffer overflow.
Published: 2026-05-06
Score: 9.8 Critical
EPSS: < 1% Very Low
KEV: No
Impact: n/a
Action: n/a
AI Analysis

Analysis and contextual insights are available on OpenCVE Cloud.

Remediation

No vendor fix or workaround currently provided.

Additional remediation guidance may be available on OpenCVE Cloud.

Tracking

Sign in to view the affected projects.

Advisories
Source ID Title
Ubuntu USN Ubuntu USN USN-8490-1 Linux kernel vulnerabilities
Ubuntu USN Ubuntu USN USN-8491-1 Linux kernel (OEM) vulnerabilities
Ubuntu USN Ubuntu USN USN-8508-1 Linux kernel (NVIDIA) vulnerabilities
Ubuntu USN Ubuntu USN USN-8490-2 Linux kernel (Real-time) vulnerabilities
Ubuntu USN Ubuntu USN USN-8545-1 Linux kernel (HWE) vulnerabilities
Ubuntu USN Ubuntu USN USN-8546-1 Linux kernel (Raspberry Pi) vulnerabilities
Ubuntu USN Ubuntu USN USN-8604-1 Linux kernel (Azure) vulnerabilities
Ubuntu USN Ubuntu USN USN-8605-1 Linux kernel (Azure CVM) vulnerabilities
References
Link Providers
https://access.redhat.com/errata/RHSA-2026:25120 cve-icon
https://access.redhat.com/errata/RHSA-2026:25121 cve-icon
https://access.redhat.com/errata/RHSA-2026:25217 cve-icon
https://access.redhat.com/errata/RHSA-2026:33899 cve-icon
https://access.redhat.com/errata/RHSA-2026:33900 cve-icon
https://access.redhat.com/errata/RHSA-2026:34094 cve-icon
https://access.redhat.com/errata/RHSA-2026:34095 cve-icon
https://access.redhat.com/errata/RHSA-2026:35844 cve-icon
https://access.redhat.com/errata/RHSA-2026:35863 cve-icon
https://access.redhat.com/errata/RHSA-2026:36767 cve-icon
https://access.redhat.com/errata/RHSA-2026:41236 cve-icon
https://access.redhat.com/errata/RHSA-2026:55761 cve-icon
https://access.redhat.com/errata/RHSA-2026:55762 cve-icon
https://access.redhat.com/errata/RHSA-2026:55763 cve-icon
https://access.redhat.com/errata/RHSA-2026:55837 cve-icon
https://access.redhat.com/errata/RHSA-2026:56224 cve-icon
https://access.redhat.com/errata/RHSA-2026:56225 cve-icon
https://access.redhat.com/errata/RHSA-2026:59091 cve-icon
https://access.redhat.com/security/cve/CVE-2026-43125 cve-icon
https://bugzilla.redhat.com/show_bug.cgi?id=2467234 cve-icon
https://git.kernel.org/stable/c/080e5563f878c64e697b89e7439d730d0daad882 cve-icon cve-icon
https://git.kernel.org/stable/c/082083c9fbd99422a0370fe2102144a231c9f5d6 cve-icon cve-icon
https://git.kernel.org/stable/c/5f053a2e7209d326cbbc07738fa6d6893d307438 cve-icon cve-icon
https://git.kernel.org/stable/c/67288113c5e6cf9e659b4065c0ed6f16100e0c71 cve-icon cve-icon
https://lore.kernel.org/linux-cve-announce/2026050619-CVE-2026-43125-c9f9@gregkh/T cve-icon
https://nvd.nist.gov/vuln/detail/CVE-2026-43125 cve-icon
https://security.access.redhat.com/data/csaf/v2/vex/2026/cve-2026-43125.json cve-icon
https://www.cve.org/CVERecord?id=CVE-2026-43125 cve-icon
History

Tue, 25 Aug 2026 13:30:00 +0000

Type Values Removed Values Added
References

Thu, 20 Aug 2026 13:30:00 +0000

Type Values Removed Values Added
References

Wed, 19 Aug 2026 12:30:00 +0000


Tue, 18 Aug 2026 12:30:00 +0000


Fri, 08 May 2026 20:00:00 +0000

Type Values Removed Values Added
Weaknesses CWE-119

Fri, 08 May 2026 18:00:00 +0000

Type Values Removed Values Added
Weaknesses CWE-787

Fri, 08 May 2026 13:00:00 +0000

Type Values Removed Values Added
Metrics cvssV3_1

{'score': 7.0, 'vector': 'CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H'}

cvssV3_1

{'score': 9.8, 'vector': 'CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H'}


Thu, 07 May 2026 00:15:00 +0000

Type Values Removed Values Added
Weaknesses CWE-130
References
Metrics threat_severity

None

cvssV3_1

{'score': 7.0, 'vector': 'CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H'}

threat_severity

Important


Wed, 06 May 2026 16:00:00 +0000

Type Values Removed Values Added
Weaknesses CWE-119

Wed, 06 May 2026 12:15:00 +0000

Type Values Removed Values Added
Description In the Linux kernel, the following vulnerability has been resolved: dlm: validate length in dlm_search_rsb_tree The len parameter in dlm_dump_rsb_name() is not validated and comes from network messages. When it exceeds DLM_RESNAME_MAXLEN, it can cause out-of-bounds write in dlm_search_rsb_tree(). Add length validation to prevent potential buffer overflow.
Title dlm: validate length in dlm_search_rsb_tree
First Time appeared Linux
Linux linux Kernel
CPEs cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*
Vendors & Products Linux
Linux linux Kernel
References

Subscriptions

Linux Linux Kernel
cve-icon MITRE

Status: PUBLISHED

Assigner: Linux

Published:

Updated: 2026-08-25T12:05:44.813Z

Reserved: 2026-05-01T14:12:55.988Z

Link: CVE-2026-43125

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Modified

Published: 2026-05-06T12:16:29.450

Modified: 2026-08-25T13:19:04.663

Link: CVE-2026-43125

cve-icon Redhat

Severity : Important

Publid Date: 2026-05-06T00:00:00Z

Links: CVE-2026-43125 - Bugzilla

cve-icon OpenCVE Enrichment

Updated: 2026-05-08T22:15:18Z

Weaknesses