Linux Kernel Vulnerability in NetFS Affecting Streaming Write Pages
CVE-2026-64157

Currently unrated

Key Information:

Vendor

Linux

Status
Vendor
CVE Published:
19 July 2026

What is CVE-2026-64157?

A vulnerability in the Linux kernel's netfs component can lead to improper handling of streaming write pages. Specifically, when there is a partial invalidation of a dirty write cached in a streaming write page, the function responsible for the invalidation incorrectly shifts the dirty region. Instead of correctly adjusting the dirty offset to the end of the invalidation region, it erroneously modifies it by setting the start to the beginning of the invalidation area. This flaw can lead to potential data corruption and unexpected behavior in applications relying on netfs for handling streaming writes.

Affected Version(s)

Linux cce6bfa6ca0e30af9927b0074c97fe6a92f28092

Linux cce6bfa6ca0e30af9927b0074c97fe6a92f28092 < 3d9601c029b934b5b6a10f99791467b10eb6b211

Linux cce6bfa6ca0e30af9927b0074c97fe6a92f28092 < 6a3d27116be2c5fb9a03d5cf37c486ac517f3689

References

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.