Sanity Check Issue in f2fs File System of Linux Kernel
CVE-2026-63819

Currently unrated

Key Information:

Vendor

Linux

Status
Vendor
CVE Published:
19 July 2026

What is CVE-2026-63819?

A vulnerability was found in the f2fs file system of the Linux kernel, where a lack of proper sanity checks could lead to kernel panics. When corrupted inodes have matching inode and node IDs, it can trigger errant behavior during file truncation processes. This introduces risks that may disrupt system stability, particularly under certain fuzz test conditions. A proposed fix introduces a new node type, NODE_TYPE_NON_IXNODE, to detect inconsistencies in the inode mapping table, ensuring enhanced integrity of file system operations.

Affected Version(s)

Linux 1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 < 406c28af75123432d38cf9bbaa6f1476f7b14770

Linux 1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 < 0cc21c1ffe15b4156b0bf744f32fd1faef0b7c73

Linux 1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 < 8712353ed80f87271d732297567dcdbe4b84e8c7

References

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.