CVE-2026-98161

Summary

In the Linux kernel, the following vulnerability has been resolved:

nvdimm: pmem: keep PREFLUSH before data writes

pmem_submit_bio() records a REQ_PREFLUSH error, but continues to copy the bio data and can later overwrite the error with a successful REQ_FUA flush. That lets data writes run after a failed preflush and can complete the bio successfully despite the failed ordering barrier.

Run the REQ_PREFLUSH flush synchronously before touching the bio data and complete the bio with the flush error if it fails. Keep asynchronous flush chaining for REQ_FUA. At that point, data copy has completed and the parent bio can wait for the chained flush bio.

Affected Software

VendorProductVersion RangeStatus
LinuxLinux1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 < 770a90c2127220f0fc194ce909ad4f0842e141cbaffected
LinuxLinux1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 < 72561ca1ab96f0f0f32737a6171641e05a318538affected
LinuxLinux1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 < c644a2f8fef5618fcf453c591177700fd07dd024affected
LinuxLinux0 < 6.18.52affected
LinuxLinux0 < 7.2.6affected
LinuxLinux6.18.52 <= 6.18.*unaffected
LinuxLinux7.2.6 <= 7.2.*unaffected
LinuxLinux7.3-rc1 <= *unaffected

Weaknesses

References