PT-2026-94749 · Linux · Linux Kernel

CVE-2026-90401

·

Published

2026-09-17

·

Updated

2026-09-28

CVSS v3.1

7.1

High

VectorAV:L/AC:L/PR:L/UI:N/S:U/C:N/I:H/A:H
Name of the Vulnerable Software and Affected Versions Linux kernel (affected versions not specified)
Description An issue exists in the md personalities that can block internally, where the support for REQ NOWAIT is incomplete. While read operations can avoid certain blocking paths, write requests may result in a scenario where one mirror succeeds and another returns -EAGAIN. In such cases, the system cannot differentiate between queue pressure and actual device failure, preventing the recording of bad blocks or safe retries without REQ NOWAIT, which leads to divergent data across mirrors.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Exploit

Found an issue in the description? Have something to add? Feel free to write us 👾

Related Identifiers

AZL-102989
CVE-2026-90401
OPENSUSE-SU-2026:11893-1

Affected Products

Linux Kernel