Linux Kernel Vulnerability in F2FS File System Management
CVE-2026-63812

Currently unrated

Key Information:

Vendor

Linux

Status
Vendor
CVE Published:
19 July 2026

What is CVE-2026-63812?

A recent flaw in the Linux kernel's management of the F2FS file system involved incorrect handling of the FI_NO_EXTENT inode flag within the __destroy_extent_node() function. When this function fails to reset the largest extent's length to zero, it leads to stale cached data, potentially leading to erroneous behavior during filesystem checks. Specifically, an inconsistency can be observed, manifesting in tests where the extent information of an inode is found to be incorrect. This vulnerability highlights the critical need for regular updates to the kernel to maintain file system integrity and prevent data corruption.

Affected Version(s)

Linux 42dd1c91f993431d0b399502479d00e6ad1bca71 < 7e4d8f98be63f98856a5176b9188dada6e7ba9ee

Linux ab1eaf9d5c99042f5b0243bf67a06283a4c0757f < 58a5deb220bcac4c73bf58954c0845644c997487

Linux b0e4395870eb3441ddc959f6710b5f6ca61aff26 < 20190e498057997532c7f186d081011f18e0a462

References

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.