File Creation Vulnerability in Linux Kernel by Vendor XYZ
CVE-2026-53244
What is CVE-2026-53244?
A flaw has been identified in the Linux Kernel relating to the creation of files via the 'nfsd4_create_file()' function. This vulnerability arises when the system fails to unlock the parent directory due to an error during the atomic creation of a file. When an error occurs in the 'atomic_create()' function, it improperly manages the reference to the dentry, potentially leaving the parent directory in a locked state. The issue stems from a transition to a newer handling mechanism that expects a valid dentry, which may not be guaranteed under certain error conditions. As a result, this can lead to resource handling inconsistencies, affecting system stability and security.
Affected Version(s)
Linux 64a989dbd144e0622371396461b11335459692d2
Linux 64a989dbd144e0622371396461b11335459692d2
Linux 7.0