-

CVE-2026-90418

nilfs2: fix BUG in nilfs_copy_dirty_pages() on dirty state mismatch

In the Linux kernel, the following vulnerability has been resolved:

nilfs2: fix BUG in nilfs_copy_dirty_pages() on dirty state mismatch

Syzbot reported a kernel BUG triggered within nilfs_copy_dirty_pages(),
which copies dirty DAT file folios/pages to its shadow page cache.  The
BUG occurs when a retrieved dirty folio/page unexpectedly loses its
'dirty' status.

This issue arises because, since the commit referenced below, the 'dirty'
flag of a folio/page can be cleared asynchronously after the filesystem
detects metadata corruption and transitions to read-only mode.

Resolve the issue by returning an -EROFS error if the filesystem has
transitioned to read-only mode.  Also change the behavior to issue a
kernel warning only once instead of triggering a kernel BUG when this
unexpected 'dirty' state is detected while the filesystem is not in
read-only mode.
Daten sind bereitgestellt durch das CVE Programm von einer CVE Numbering Authority (CNA) (Unstrukturiert).
HerstellerLinux
≫
Produkt Linux
Default Statusunaffected
Version 8c26c4e2694a163d525976e804d81cd955bbb40c
Version < 5166a21b12f549774f2983fa86d2526ea9e66ace
Status affected
Version 8c26c4e2694a163d525976e804d81cd955bbb40c
Version < 4e1f21e7540b25d83f86b50780836ed7d2afcc93
Status affected
Version 8c26c4e2694a163d525976e804d81cd955bbb40c
Version < 3904fb0ee741ebbbc27ec8f50a9bb6cd31e8af05
Status affected
Version 8c26c4e2694a163d525976e804d81cd955bbb40c
Version < f181155baf0c93a74ebe804c6cecbe970e78ee9e
Status affected
Version 8c26c4e2694a163d525976e804d81cd955bbb40c
Version < 66f4ad3ce158902e5f98afea93189972ed8750c2
Status affected
HerstellerLinux
≫
Produkt Linux
Default Statusaffected
Version 3.10
Status affected
Version 0
Version < 3.10
Status unaffected
Version <= 6.6.*
Version 6.6.157
Status unaffected
Version <= 6.12.*
Version 6.12.110
Status unaffected
Version <= 6.18.*
Version 6.18.52
Status unaffected
Version <= 7.2.*
Version 7.2.6
Status unaffected
Version <= *
Version 7.3-rc1
Status unaffected
VulnDex Vulnerability Enrichment
Diese Information steht angemeldeten Benutzern zur Verfügung. Login Login
Zu dieser CVE wurde keine Warnung gefunden.
EPSS Metriken
Typ Quelle Score Percentile
EPSS FIRST.org 0.17% 0.065
CVSS Metriken
Quelle Base Score Exploit Score Impact Score Vector String
Es wurden noch keine Informationen zu CWE veröffentlicht.
https://git.kernel.org/stable/c/5166a21b12f549774f2983fa86d2526ea9e66ace
https://git.kernel.org/stable/c/4e1f21e7540b25d83f86b50780836ed7d2afcc93
https://git.kernel.org/stable/c/3904fb0ee741ebbbc27ec8f50a9bb6cd31e8af05
https://git.kernel.org/stable/c/f181155baf0c93a74ebe804c6cecbe970e78ee9e
https://git.kernel.org/stable/c/66f4ad3ce158902e5f98afea93189972ed8750c2