-

CVE-2026-90262

btrfs: retry verity reads for not-uptodate Merkle folios

In the Linux kernel, the following vulnerability has been resolved:

btrfs: retry verity reads for not-uptodate Merkle folios

btrfs_read_merkle_tree_page() can find a folio in the mapping that is not
uptodate.  After taking the folio lock, the current code treats that state
as a read error and returns -EIO.

That can make a previous transient read failure sticky.  If the failed read
left a not-uptodate folio in the mapping, later callers find that folio and
fail instead of retrying the read.

Keep the existing page-cache insertion and locking order, but retry the
Merkle item read when a not-uptodate folio is found in the mapping.  Also
unlock the folio when read_key_bytes() fails so that a later caller can
lock it and retry the read.
Daten sind bereitgestellt durch das CVE Programm von einer CVE Numbering Authority (CNA) (Unstrukturiert).
HerstellerLinux
≫
Produkt Linux
Default Statusunaffected
Version 06ed09351b67eb1114ae106a87a0ee3ea9adb3db
Version < 90e9eae1b5907fa36620ffb7f4f1a4afa9333427
Status affected
Version 06ed09351b67eb1114ae106a87a0ee3ea9adb3db
Version < c1fa005cdf3b7ff14cdfd7d512830088a3fc256b
Status affected
Version 06ed09351b67eb1114ae106a87a0ee3ea9adb3db
Version < 12b6d1a1715cbced2e445ca353f9c9987b8636e2
Status affected
Version 06ed09351b67eb1114ae106a87a0ee3ea9adb3db
Version < 81241f734f0f662378f5ffc53882b012923e6fe5
Status affected
Version 06ed09351b67eb1114ae106a87a0ee3ea9adb3db
Version < 8cc569696dac51fc62bb39b3b8f530582b916d29
Status affected
HerstellerLinux
≫
Produkt Linux
Default Statusaffected
Version 6.6
Status affected
Version 0
Version < 6.6
Status unaffected
Version <= 6.6.*
Version 6.6.157
Status unaffected
Version <= 6.12.*
Version 6.12.110
Status unaffected
Version <= 6.18.*
Version 6.18.52
Status unaffected
Version <= 7.2.*
Version 7.2.6
Status unaffected
Version <= *
Version 7.3-rc1
Status unaffected
VulnDex Vulnerability Enrichment
Diese Information steht angemeldeten Benutzern zur Verfügung. Login Login
Zu dieser CVE wurde keine Warnung gefunden.
EPSS Metriken
Typ Quelle Score Percentile
EPSS FIRST.org 0.2% 0.102
CVSS Metriken
Quelle Base Score Exploit Score Impact Score Vector String
Es wurden noch keine Informationen zu CWE veröffentlicht.
https://git.kernel.org/stable/c/90e9eae1b5907fa36620ffb7f4f1a4afa9333427
https://git.kernel.org/stable/c/c1fa005cdf3b7ff14cdfd7d512830088a3fc256b
https://git.kernel.org/stable/c/12b6d1a1715cbced2e445ca353f9c9987b8636e2
https://git.kernel.org/stable/c/81241f734f0f662378f5ffc53882b012923e6fe5
https://git.kernel.org/stable/c/8cc569696dac51fc62bb39b3b8f530582b916d29