CVE-2026-56135: Ntfs Acl Inheritance Buffer Underallocation

Heap buffer allocation for inherited security descriptor uses static or incomplete slack estimation without accounting for dynamic CREATOR_OWNER and CREATOR_GROUP ACE expansions, potentially causing a heap buffer overflow.

Provally CuratedPublic repositoryHighMedium confidenceVerifiedApache-2.0C
greprules fetch cve-2026-56135-ntfs-acl-inheritance-buffer-underallocation --engine opengrep

Description

Heap buffer allocation for inherited security descriptor uses static or incomplete slack estimation without accounting for dynamic CREATOR_OWNER and CREATOR_GROUP ACE expansions, potentially causing a heap buffer overflow.