CVE-2026-80557 evidence review
Linux
In the Linux kernel, the following vulnerability has been resolved: libceph: fix OOB read in decode_watchers() via missing bounds check ceph_start_decoding() validates that struct_len bytes remain in the buffer after the encoding header, but accepts struct_len=0 as valid: ceph_decode_need(p, end, 0, bad) always passes. When a malicious or compromised OSD sends an obj_list_watch_response_t reply with struct_len=0, ceph_start_decoding() returns success with p == end, leaving zero bytes guaranteed for subsequent reads. The immediately following ceph_decode_32(p) in decode_watchers() has no pre...
This record remains available for product and version identification, but it is not presented as a complete remediation procedure. Confirm the affected range and the supported fix in a direct vendor advisory before changing production systems.
Identify the product and installed version
Record whether Linux is present, where it is installed, and which interfaces are exposed.
- Record the product name, package or appliance identifier, and installed version.
- Identify internet-facing, administrative, API, and internal access paths.
- Preserve the pre-change configuration and relevant service logs.
Compare the affected range
Use the current record as an identification aid: >= a4ed38d7a180f184a6e7aedd09db9ca4b1e6a71c < 85479b7d65b4ebcb07fbbe57230976793974ab4a, >= a4ed38d7a180f184a6e7aedd09db9ca4b1e6a71c < 1c824e7c75bb4adf19553dd4ea944a5d83096be8, >= a4ed38d7a180f184a6e7aedd09db9ca4b1e6a71c < f161be39201eb5f9b1f58fb8f90b8a9cd3931eb6, >= a4ed38d7a180f184a6e7aedd09db9ca4b1e6a71c < eab3eeb68bfc639d74f27256f05546af5c4f787d, >= a4ed38d7a180f184a6e7aedd09db9ca4b1e6a71c < c59219a6b62d74936963983e5815524c3de8dd79, >= a4ed38d7a180f184a6e7aedd09db9ca4b1e6a71c < cb8246e5846dbbe34930903a90c7a90dd8e5910b, >= a4ed38d7a180f184a6e7aedd09db9ca4b1e6a71c < 7130d94846dadbb97b6b7f4d78a3a7bba6e3daa1, >= a4ed38d7a180f184a6e7aedd09db9ca4b1e6a71c < 00ead17c7de137a692edee59f2772e6af687e8eb, >= 4.9. Resolve incomplete inventory results before deciding that an asset is unaffected.
Verify the authoritative remediation source
Open the linked source material and locate a direct vendor advisory for this CVE. Confirm the supported fixed release and product-specific update path before making a production change.
Operational boundary
This page does not replace the vendor advisory, support contract, change-management process, or recovery plan. Do not infer that an asset is unaffected from an incomplete inventory query or a missing fixed-version field.