Linux Kernel gfs2 Vulnerability - Quota Initialization Issue
CVE-2026-97520

Currently unrated

Key Information:

Vendor

Linux

Status
Vendor
CVE Published:
24 September 2026

What is CVE-2026-97520?

A vulnerability exists in the Linux kernel's gfs2 module related to the quota initialization process. The issue was addressed by modifying the increment logic of the iterator used in the gfs2_quota_init() function. This change enhances clarity by moving the iterator increment outside the loop body, which prevents interference between pointer advancement and duplicate-slot management. Proper handling of this iterator ensures that the function operates correctly and avoids potential logic flaws.

Affected Version(s)

Linux 1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 < 04ec2f3b29b3c8a59950b8816b5ebc8ba052808a

Linux 1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 < 21a50a9373adab35ffadf5cf59272dc99078170e

Linux 1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 < 942202677f8f2ee448a6a2feb06aeeaf520342e3

References

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.