CVE-2026-92494
In the Linux kernel, the following vulnerability has been resolved: ext4: fix buffer_head leak in ext4_init_orphan_info ext4_init_orphan_info() reads orphan file blocks with ext4_bread() and stores the returned buffer_head in oi->of_binfo[i].ob_bh. If ext4_bread() succeeds but the orphan block magic or checksum validation fails, the function jumps to out_free. However, the old out_free loop starts releasing buffers from i - 1, so the current buffer_head at index i is skipped. This leaks the buffer_head reference obtained by ext4_bread() on the bad magic and bad checksum error paths. Fix this by tracking the number of successfully read buffer_heads and releasing exactly those buffer_heads on the error path.
What this means for your business
What to do
- 1Ask your IT team or provider whether any of your systems use the affected product.
- 2If you do, follow the vendor's guidance. No patch reference has been published yet.
Not sure if your company is exposed?
Fastnexa’s certified penetration testers can check whether attackers could use this flaw, or others like it, against your websites, apps and network. The full test is free for our first 10 founding clients until 31 December 2026.
Scoring
- CVSS
- Not yet scored
- Assigned by
- 416baaa9-dc9f-4396-8d5f-8c081fb06d67
Dates
- Published
- 2026-09-17
- Last modified
- 2026-09-17
- Sources
- NVD
References
- https://git.kernel.org/stable/c/05704335803b69c1bfa8637b7ada942bf2ee8a41
- https://git.kernel.org/stable/c/1399f102d8a1855c1a38506057306ec79d0787d9
- https://git.kernel.org/stable/c/35fc83c65faf7949f5701bb34b20f822560a7718
- https://git.kernel.org/stable/c/6ec53ccab0d691b3c73e03d930343ca45987e88d
- https://git.kernel.org/stable/c/74637f7fef030e5fb2e835b7dfeb05efdc48e0fe
- https://git.kernel.org/stable/c/a9a6ec1298f9bc134b2c5db27d25bb10603b7113
- https://git.kernel.org/stable/c/e1e342d9a561c016b8531ec1f4dcefaad9d64954