-

CVE-2026-97610

netfs: Fix uninitialized return value in netfs_unbuffered_write()

In the Linux kernel, the following vulnerability has been resolved:

netfs: Fix uninitialized return value in netfs_unbuffered_write()

If preparation of the first subrequest fails,
netfs_unbuffered_write() exits its loop before ret is initialized. The
empty-iterator check can do the same.

For synchronous writes, netfs_unbuffered_write_iter_locked() may then
return an unrelated error instead of wreq->error. This is reachable
through CIFS if cifs_prepare_write() fails to reopen the file or obtain
credits.

Initialize ret to 0 so the caller returns wreq->error if no data was
written, or the number of bytes already written otherwise.

Found with Clang's -Wconditional-uninitialized.
Daten sind bereitgestellt durch das CVE Programm von einer CVE Numbering Authority (CNA) (Unstrukturiert).
HerstellerLinux
≫
Produkt Linux
Default Statusunaffected
Version 72d08d2839649d1c5efbe375751f4473fa4486af
Version < 3d038eebdbd400c3bc4b66bd8aa0dff0c2bcce26
Status affected
Version a0b4c7a49137ed21279f354eb59f49ddae8dffc2
Version < 2e38d500471d097cda87d7d374bbc1b13493075d
Status affected
Version a0b4c7a49137ed21279f354eb59f49ddae8dffc2
Version < f18e8774f4d3137fa0a5fb8ffa83d59a719666d8
Status affected
Version 0c29f6d63122a0168d67cb8ecde5b4cf7fe4acb0
Status affected
Version 6.18.17
Version < 6.18.53
Status affected
Version 6.19.7
Version < 6.20
Status affected
HerstellerLinux
≫
Produkt Linux
Default Statusaffected
Version 7.0
Status affected
Version 0
Version < 7.0
Status unaffected
Version <= 6.18.*
Version 6.18.53
Status unaffected
Version <= 7.2.*
Version 7.2.7
Status unaffected
Version <= *
Version 7.3-rc3
Status unaffected
VulnDex Vulnerability Enrichment
Diese Information steht angemeldeten Benutzern zur Verfügung. Login Login
Zu dieser CVE wurde keine Warnung gefunden.
EPSS Metriken
Typ Quelle Score Percentile
EPSS FIRST.org 0.2% 0.086
CVSS Metriken
Quelle Base Score Exploit Score Impact Score Vector String
Es wurden noch keine Informationen zu CWE veröffentlicht.
https://git.kernel.org/stable/c/3d038eebdbd400c3bc4b66bd8aa0dff0c2bcce26
https://git.kernel.org/stable/c/2e38d500471d097cda87d7d374bbc1b13493075d
https://git.kernel.org/stable/c/f18e8774f4d3137fa0a5fb8ffa83d59a719666d8