Resource Management Issue in Linux Kernel's EROFS Module
CVE-2026-80892

Currently unrated

Key Information:

Vendor

Linux

Status
Vendor
CVE Published:
4 September 2026

What is CVE-2026-80892?

A vulnerability in the Linux kernel's EROFS module alters memory allocation, causing potential excessive resource usage on high-CPU systems. When the module parameter for MicroLZMA stream pool size is unset, each EROFS image can preallocate significant vmalloc memory, potentially leading to inefficient resource management. The recent updates establish a new configuration option to limit the number of streams, allowing administrators to tailor memory usage while maintaining existing limits on dictionary sizes.

Affected Version(s)

Linux 622ceaddb7649ca328832f50ba1400af778d75fa < 682cb3ece37fc5141e73bc726ccf4adb833e5189

Linux 622ceaddb7649ca328832f50ba1400af778d75fa

Linux 622ceaddb7649ca328832f50ba1400af778d75fa < 0c676903cb2a61992ded8e7907609cc6b0f11744

References

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.