Linux Kernel gfs2 Vulnerability - Quota Initialization Issue
CVE-2026-97520
What is CVE-2026-97520?
A vulnerability exists in the Linux kernel's gfs2 module related to the quota initialization process. The issue was addressed by modifying the increment logic of the iterator used in the gfs2_quota_init() function. This change enhances clarity by moving the iterator increment outside the loop body, which prevents interference between pointer advancement and duplicate-slot management. Proper handling of this iterator ensures that the function operates correctly and avoids potential logic flaws.
Affected Version(s)
Linux 1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 < 04ec2f3b29b3c8a59950b8816b5ebc8ba052808a
Linux 1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 < 21a50a9373adab35ffadf5cf59272dc99078170e
Linux 1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 < 942202677f8f2ee448a6a2feb06aeeaf520342e3