CVE-2026-63820

Summary

In the Linux kernel, the following vulnerability has been resolved:

f2fs: fix missing read bio submission on large folio error

f2fs_read_data_large_folio() can keep a read bio across multiple readahead folios. If a later folio hits an error before any of its blocks are added to the bio, folio_in_bio is false and the current error path returns immediately after ending that folio.

This can leave the bio accumulated for earlier folios unsubmitted. Those folios then never receive read completion, and readers can wait indefinitely on the locked folios.

Route errors through the common out path so any pending bio is submitted before returning. Stop consuming more readahead folios once an error is seen, and only wait on and clear the current folio when it was actually added to the bio.

Affected Software

VendorProductVersion RangeStatus
LinuxLinuxa5d8b9d94e1863f3ebb7182c238b2c713f6f4efd < 48c92559e7b66fdc3cbc74f6e152e66ec0150a0aaffected
LinuxLinuxa5d8b9d94e1863f3ebb7182c238b2c713f6f4efd < 74c8d2ec95c59a5651ecd975c466998af1961fd4affected
LinuxLinux7.0affected
LinuxLinux0 < 7.0unaffected
LinuxLinux7.1.3 <= 7.1.*unaffected
LinuxLinux7.2-rc1 <= *unaffected

Weaknesses

References