CVE-2026-31448CRITICAL 9.4EPSS p36.5%

CVE-2026-31448CVE-2026-31448

linux / linux_kernel

Description

In the Linux kernel, the following vulnerability has been resolved: ext4: avoid infinite loops caused by residual data On the mkdir/mknod path, when mapping logical blocks to physical blocks, if inserting a new extent into the extent tree fails (in this example, because the file system disabled the huge file feature when marking the inode as dirty), ext4_ext_map_blocks() only calls ext4_free_blocks() to reclaim the physical block without deleting the corresponding data in the extent tree. This causes subsequent mkdir operations to reference the previously reclaimed physical block number again, even though this physical block is already being used by the xattr block. Therefore, a situation arises where both the directory and xattr are using the same buffer head block in memory simultaneously. The above causes ext4_xattr_block_set() to enter an infinite loop about "inserted" and cannot release the inode lock, ultimately leading to the 143s blocking problem mentioned in [1]. If the me

Scoring

CVSS 3.19.4 (CRITICAL)
VectorCVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:H/A:H
EPSS0.44% probability of exploitation · percentile 36.5% · 2026-08-03T12:00:16Z
Published2026-04-22
Last modified2026-07-14

Underlying weaknesses· 1

CWE-835

References

  1. https://git.kernel.org/stable/c/3a7667595bcad84da53fc156a418e110267c3412
  2. https://git.kernel.org/stable/c/416c86f30f91b4fb2642ef6b102596ca898f41a5
  3. https://git.kernel.org/stable/c/5422fe71d26d42af6c454ca9527faaad4e677d6c
  4. https://git.kernel.org/stable/c/64f425b06b3bea9abc8977fd3982779b3ad070c9
  5. https://git.kernel.org/stable/c/c66545e83a802c3851d9be27a41c0479dd29ff0c
  6. https://git.kernel.org/stable/c/ecc50bfca9b5c2ee6aeef998181689b80477367b

1

TypeTargetConfidenceTier
WeaknessLoop with Unreachable Exit Condition ('Infinite Loop')cwe-8350%live

Related by meaning· 6

Nearest entities by semantic similarity across the cs-graph corpus.

CVE
CVE-2026-31449
CVE
CVE-2026-46002
CVE
CVE-2026-43158
CVE
CVE-2026-31450
CVE
CVE-2026-46194
CVE
CVE-2026-31402
Sourced from NVD + FIRST.org EPSS. Curated for EU compliance use cases by Adam Lundqvist, Founder at SQUR.