Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
No advisories yet.
Fri, 11 Sep 2026 06:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Title | Bypass of dm-verity enforcement when .verity file missing in Debian live-boot |
Fri, 11 Sep 2026 05:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | live-boot ff8867c allows attackers to bypass the dm-verity-enforce-roothash-signature protection mechanism when the .verity file is missing. | |
| Weaknesses | CWE-347 | |
| References |
| |
| Metrics |
cvssV4_0
|
Subscriptions
No data.
Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2026-09-11T05:19:34.404Z
Reserved: 2026-09-11T04:44:26.012Z
Link: CVE-2026-89169
No data.
Status : Received
Published: 2026-09-11T05:16:38.840
Modified: 2026-09-11T06:16:23.713
Link: CVE-2026-89169
No data.
OpenCVE Enrichment
Updated: 2026-09-11T06:30:05Z
