-

CVE-2026-93073

dax: read holder_ops once in dax_holder_notify_failure()

In the Linux kernel, the following vulnerability has been resolved:

dax: read holder_ops once in dax_holder_notify_failure()

dax_holder_notify_failure() reads dax_dev->holder_ops twice without
READ_ONCE() -- once for the NULL check and once for the indirect
notify_failure() call. A concurrent fs_put_dax() can clear holder_ops
between the two reads, so the check can observe a non-NULL pointer while
the call dereferences NULL. (kill_dax() also clears holder_ops, but only
after synchronize_srcu(), so it cannot race a reader that is inside
dax_read_lock(); fs_put_dax() does no such synchronization.)

Fetch holder_ops once into a local with READ_ONCE() so the NULL check and
the indirect call observe the same value.
Daten sind bereitgestellt durch das CVE Programm von einer CVE Numbering Authority (CNA) (Unstrukturiert).
HerstellerLinux
≫
Produkt Linux
Default Statusunaffected
Version 8012b866085523758780850087102421dbcce522
Version < 1661b9bf78def01a8c96409569772d9b2592f4ba
Status affected
Version 8012b866085523758780850087102421dbcce522
Version < 0a42180d5410c98829ee72d1d426fb7faf9e6873
Status affected
Version 8012b866085523758780850087102421dbcce522
Version < ee1251621d1c7cf3155c6704542cbb358d799968
Status affected
Version 8012b866085523758780850087102421dbcce522
Version < 6a37acecc7c29136235cbc446a1b89e81414344b
Status affected
Version 8012b866085523758780850087102421dbcce522
Version < eb412f80311fc7ab6eb3203091a3fe59a5e9fd30
Status affected
Version 8012b866085523758780850087102421dbcce522
Version < 7ae9d15bdcde0f2955ae13b6a95587f9e23b2359
Status affected
HerstellerLinux
≫
Produkt Linux
Default Statusaffected
Version 6.0
Status affected
Version 0
Version < 6.0
Status unaffected
Version <= 6.1.*
Version 6.1.188
Status unaffected
Version <= 6.6.*
Version 6.6.157
Status unaffected
Version <= 6.12.*
Version 6.12.110
Status unaffected
Version <= 6.18.*
Version 6.18.52
Status unaffected
Version <= 7.2.*
Version 7.2.6
Status unaffected
Version <= *
Version 7.3-rc1
Status unaffected
VulnDex Vulnerability Enrichment
Diese Information steht angemeldeten Benutzern zur Verfügung. Login Login
Zu dieser CVE wurde keine Warnung gefunden.
EPSS Metriken
Typ Quelle Score Percentile
EPSS FIRST.org 0.18% 0.079
CVSS Metriken
Quelle Base Score Exploit Score Impact Score Vector String
Es wurden noch keine Informationen zu CWE veröffentlicht.
https://git.kernel.org/stable/c/1661b9bf78def01a8c96409569772d9b2592f4ba
https://git.kernel.org/stable/c/0a42180d5410c98829ee72d1d426fb7faf9e6873
https://git.kernel.org/stable/c/ee1251621d1c7cf3155c6704542cbb358d799968
https://git.kernel.org/stable/c/6a37acecc7c29136235cbc446a1b89e81414344b
https://git.kernel.org/stable/c/eb412f80311fc7ab6eb3203091a3fe59a5e9fd30
https://git.kernel.org/stable/c/7ae9d15bdcde0f2955ae13b6a95587f9e23b2359