CVE-2026-53393
N/A
Summary
In the Linux kernel, the following vulnerability has been resolved:
nfsd: reset write verifier on deferred writeback errors
nfsd_vfs_write() and nfsd_commit() both call filemap_check_wb_err() to detect deferred writeback errors, but neither rotates the server's write verifier (nn->writeverf) when this check fails. Every other durable-storage-failure path in these functions calls commit_reset_write_verifier() before returning an error.
The missing rotation means clients holding UNSTABLE write data under the current verifier will COMMIT, receive the unchanged verifier back, and conclude their data is durable — silently dropping data that failed writeback. This violates the UNSTABLE+COMMIT durability contract (RFC 1813 §3.3.7, RFC 8881 §18.32).
Add commit_reset_write_verifier() calls at both filemap_check_wb_err() error sites, matching the pattern used by adjacent error paths in the same functions. The helper already filters -EAGAIN and -ESTALE internally, so the calls are unconditionally safe.
Affected Software
| Vendor | Product | Version Range | Status |
|---|---|---|---|
| Linux | Linux | 555dbf1a9aac6d3150c8b52fa35f768a692f4eeb < 1dd664b39774a9c89b72de8e59bf9ef4b3aaff2e | affected |
| Linux | Linux | 555dbf1a9aac6d3150c8b52fa35f768a692f4eeb < 4367afc119c51e17a616f6908772b7e2c2c4013f | affected |
| Linux | Linux | 555dbf1a9aac6d3150c8b52fa35f768a692f4eeb < b027cca33c97354149fcc0ddeede4525c41093cd | affected |
| Linux | Linux | 555dbf1a9aac6d3150c8b52fa35f768a692f4eeb < 2090b05803faab8a9fa62fbff871007862cac1b7 | affected |
| Linux | Linux | f14816f2f928c560d28ba344af689f56efcd6f55 | affected |
| Linux | Linux | 3145fe0ebb16e1715ad541a301bc6675c8375fcd | affected |
| Linux | Linux | 5.10.124 < 5.11 | affected |
| Linux | Linux | 5.15.49 < 5.16 | affected |
| Linux | Linux | 5.17 | affected |
| Linux | Linux | 0 < 5.17 | unaffected |
| Linux | Linux | 6.12.95 <= 6.12.* | unaffected |
| Linux | Linux | 6.18.38 <= 6.18.* | unaffected |
| Linux | Linux | 7.1.3 <= 7.1.* | unaffected |
| Linux | Linux | 7.2-rc1 <= * | unaffected |
Weaknesses
References
- https://git.kernel.org/stable/c/1dd664b39774a9c89b72de8e59bf9ef4b3aaff2e
- https://git.kernel.org/stable/c/4367afc119c51e17a616f6908772b7e2c2c4013f
- https://git.kernel.org/stable/c/b027cca33c97354149fcc0ddeede4525c41093cd
- https://git.kernel.org/stable/c/2090b05803faab8a9fa62fbff871007862cac1b7
Feedback
Was this page helpful?
Glad to hear it! Please tell us how we can improve.
Sorry to hear that. Please tell us how we can improve.