PT-2026-94808 · Linux · Linux Kernel
CVE-2026-92500
·
Published
2026-09-17
·
Updated
2026-09-28
None
No severity ratings or metrics are available. When they are, we'll update the corresponding info on the page.
Name of the Vulnerable Software and Affected Versions
Linux kernel (affected versions not specified)
Description
A race condition exists in the ext4 file system when handling inline data writes. A concurrent thread, such as
ext4 page mkwrite(), can convert inline data to an extent between the write begin and write end phases. Previously, the write end handlers relied on the live inode state, causing them to miss the inline path and incorrectly execute extent-based logic. Because block buffers were not allocated during write begin, this led to NULL pointer dereferences or data loss due to folio buffers(folio) being NULL. Additionally, if a concurrent page fault converts inline data to an extent after the state check but before ext4 write inline data end() acquires the xattr lock, a kernel panic is triggered by the BUG ON(!ext4 has inline data(inode)) check.Recommendations
At the moment, there is no information about a newer version that contains a fix for this vulnerability.
Exploit
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Linux Kernel