Linux Kernel Vulnerability in Netfs Impacting File System Integrity
CVE-2026-64160
Currently unrated
What is CVE-2026-64160?
A vulnerability in the Linux kernel related to the netfs component can lead to inconsistencies in file size management. This issue arises from improper handling of the ->remote_i_size and ->zero_point parameters, potentially allowing corrupted size information due to race conditions. The fix involves ensuring that the i_lock is consistently maintained while updating file sizes to secure the integrity of the i_size_seqcount, thereby preventing potential file system errors.
Affected Version(s)
Linux 4058f742105ecfcbdf99e1139e6c1f74fb8e6db9 < 55970f238d495517edc961d55c44c772594d0969
Linux 4058f742105ecfcbdf99e1139e6c1f74fb8e6db9 < 2c8f4742bb76117d735f92a3932d85239b16c494
Linux 5.18