CVE-2026-89770

Summary

In the Linux kernel, the following vulnerability has been resolved:

iomap: don't free integrity payload that doesn't exist

fs_bio_integrity_alloc might not allocate a bio integrity payload if PI verification is disabled on the block device. Check for that case before calling fs_bio_integrity_free in iomap_bio_read_folio_range_sync to avoid a NULL pointer dereferences.

Make the branch cover the PI verification as well - while fs_bio_integrity_verify works without an integrity payload, it requires one to actually do useful work.

Affected Software

VendorProductVersion RangeStatus
LinuxLinux0b10a370529cbd7b918c1eef43d409e43d9e0b78 < 65651f1001aa3638909bc58c7b2b46160692757baffected
LinuxLinux0b10a370529cbd7b918c1eef43d409e43d9e0b78 < 8a8685b32c0718cc7b2cb4d6202e5a5b8e0a8e2daffected
LinuxLinux7.1affected
LinuxLinux0 < 7.1unaffected
LinuxLinux7.2.4 <= 7.2.*unaffected
LinuxLinux7.3-rc1 <= *unaffected

Weaknesses

References