CVE-2026-89458
N/A
Summary
In the Linux kernel, the following vulnerability has been resolved:
s390/dasd: Do not complete a failed ESE read as successful
dasd_int_handler() completes an NRF read of an unallocated ESE track by calling ese_read() and unconditionally marking the request DASD_CQR_SUCCESS. dasd_eckd_ese_read() can return an error before it has zeroed the destination buffer: a failed sense-data parse or a current track outside the requested range both return early, leaving the destination pages untouched. The request is still completed successfully, so the block layer is handed stale / uninitialized memory instead of zeros.
Check the ese_read() return value and fail the request through the normal error path instead of forcing DASD_CQR_SUCCESS.
Affected Software
| Vendor | Product | Version Range | Status |
|---|---|---|---|
| Linux | Linux | 5e6bdd37c5526ef01326df5dabb93011ee89237e < c9adf8399732306dfc97b3adb4778038743e3f5e | affected |
| Linux | Linux | 5e6bdd37c5526ef01326df5dabb93011ee89237e < 52b331c99baac653ca794bd8487c8ec4de8db203 | affected |
| Linux | Linux | 5e6bdd37c5526ef01326df5dabb93011ee89237e < b0d94dd6e82df396e2254c8b0f25eff7d19c2e7f | affected |
| Linux | Linux | 5e6bdd37c5526ef01326df5dabb93011ee89237e < cddb447c62466f3076938ce120028d7b591f9f37 | affected |
| Linux | Linux | fbbacd0dcbc3ae9398c569dbea96ae4b5ad97e04 | affected |
| Linux | Linux | 5f7c9989f11305aaa43e0f4378f4f070022a9f2b | affected |
| Linux | Linux | 5.4.26 < 5.5 | affected |
| Linux | Linux | 5.5.10 < 5.6 | affected |
| Linux | Linux | 5.6 | affected |
| Linux | Linux | 0 < 5.6 | unaffected |
| Linux | Linux | 6.12.109 <= 6.12.* | unaffected |
| Linux | Linux | 6.18.50 <= 6.18.* | unaffected |
| Linux | Linux | 7.2.4 <= 7.2.* | unaffected |
| Linux | Linux | 7.3-rc1 <= * | unaffected |
Weaknesses
References
- https://git.kernel.org/stable/c/c9adf8399732306dfc97b3adb4778038743e3f5e
- https://git.kernel.org/stable/c/52b331c99baac653ca794bd8487c8ec4de8db203
- https://git.kernel.org/stable/c/b0d94dd6e82df396e2254c8b0f25eff7d19c2e7f
- https://git.kernel.org/stable/c/cddb447c62466f3076938ce120028d7b591f9f37
Feedback
Was this page helpful?
Glad to hear it! Please tell us how we can improve.
Sorry to hear that. Please tell us how we can improve.