CVE-2026-93258

EUVD-2026-86130
In the Linux kernel, the following vulnerability has been resolved:

ocfs2: do not use make_bad_inode() in ocfs2_read_inode_block_full()

This reverts commit 58b6fcd2ab34 ("ocfs2: mark inode bad upon validation
failure during read").

Since 'make_bad_inode()' resets inode type to S_IFREG, doing this for
directory inode during active VFS lookup is likely to confuse the latter,
including VFS_BUG_ON_INODE() triggered in this case.
ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
NISTPrimary
UNKNOWN
---
Awaiting analysis
This vulnerability is currently awaiting analysis.
Base Score
CVSS 3.x
EPSS Score
Percentile: Unknown
Debian logo
Debian Releases
Debian Product
Codename
linux
bookworm
6.1.176-1
fixed
bookworm (security)
6.1.187-1
fixed
forky
7.2.6-1
fixed
sid
7.2.7-1
fixed
trixie
6.12.107-1
fixed
trixie (security)
6.12.107-1
fixed