Improper control of a resource through its lifetime in Linux kernel - CVE-2026-31448

 

Improper control of a resource through its lifetime in Linux kernel - CVE-2026-31448

Published: April 24, 2026


Vulnerability identifier: #VU127703
CSH Severity: Low
CVSS v4: 6.8 [CVSS:4.0/AV:L/AC:L/AT:N/PR:L/UI:N/VC:N/VI:N/VA:H/SC:N/SI:N/SA:N]
CVE-ID: CVE-2026-31448
CWE-ID: CWE-664
Exploitation vector: Local access
Exploit availability: No public exploit available

Vulnerability details

The vulnerability allows a local user to cause a denial of service.

The vulnerability exists due to improper state management in ext4_ext_map_blocks() and ext4_xattr_block_set() when handling mkdir or mknod operations after a failed extent insertion. A local user can trigger filesystem operations that leave residual extent metadata to cause a denial of service.

The issue can result in an infinite loop and prolonged blocking while the inode lock is not released.


Affected software

Linux kernel
Debian Linux
Ubuntu
openEuler
linux (Ubuntu package)
linux-fips (Ubuntu package)
linux-aws-hwe (Ubuntu package)
linux-oracle (Ubuntu package)
linux-azure (Ubuntu package)
linux-kvm (Ubuntu package)
linux-oracle-5.4 (Ubuntu package)
linux-gcp-fips (Ubuntu package)
linux-azure-5.4 (Ubuntu package)
kernel
python3-perf-debuginfo
kernel-headers
python3-perf
perf-debuginfo
perf
bpftool
bpftool-debuginfo
kernel-debuginfo
kernel-tools-devel
kernel-debugsource
kernel-devel
kernel-source
kernel-tools
kernel-tools-debuginfo
linux-lowlatency (Ubuntu package)
linux-azure-5.15 (Ubuntu package)
linux-nvidia-tegra-igx (Ubuntu package)
linux-aws-5.15 (Ubuntu package)
linux-azure-fde-5.15 (Ubuntu package)
linux (Debian package)
linux-azure-fips (Ubuntu package)
linux-hwe-6.8 (Ubuntu package)
linux-nvidia-tegra (Ubuntu package)
linux-aws-6.8 (Ubuntu package)
linux-raspi (Ubuntu package)
linux-azure-fde (Ubuntu package)
linux-azure-fde-6.8 (Ubuntu package)
linux-raspi-realtime (Ubuntu package)
linux-hwe-6.17 (Ubuntu package)
linux-azure-fde-6.17 (Ubuntu package)
linux-azure-6.17 (Ubuntu package)
linux-nvidia-6.17 (Ubuntu package)
linux-oem-6.17 (Ubuntu package)

How to mitigate CVE-2026-31448

Install security update from vendor's repository.

Linux kernel - update to 7.0 rc3
linux (Ubuntu package) - addressed in versions 3.13.0.215.225, 3.13.0-215.266, 4.4.0.284.290, 4.4.0-284.318, 4.4.0-284.318~14.04.1, 4.4.0.1157.154, 4.4.0-1157.163, 4.4.0.1158.155, 4.4.0-1158.169, 4.4.0.1195.199, 4.4.0-1195.210, 4.15.0.254.238, 4.15.0-254.266, 4.15.0.1150.147, 4.15.0-1150.162, 4.15.0.1177.168, 4.15.0-1177.182, 4.15.0.1188.201~16.04.1, 4.15.0-1188.205, 4.15.0.1195.193, 4.15.0-1195.208, 4.15.0.1205.173, 4.15.0-1205.220, 4.15.0.2096.94, 4.15.0-2096.102, 4.15.0.2113.109, 4.15.0-2113.119, 4.15.0.2133.127, 4.15.0-2133.139, 5.4.0.234.226, 5.4.0-234.254, 5.4.0-234.254~18.04.1, 5.4.0-1066.69, 5.4.0.1080.80, 5.4.0-1080.84, 5.4.0-1108.113, 5.4.0-1108.113~18.04.1, 5.4.0.1108.137, 5.4.0.1121.117, 5.4.0-1121.128, 5.4.0.1136.133, 5.4.0-1136.146, 5.4.0-1145.158, 5.4.0-1145.158~18.04.1, 5.4.0.1145.176, 5.4.0.1160.154, 5.4.0-1160.170+fips1, 5.4.0.1162.160, 5.4.0-1162.173, 5.4.0-1162.173~18.04.1, 5.4.0.1165.167, 5.4.0-1165.174, 5.4.0-1165.174~18.04.1, 5.4.0.1167.159, 5.4.0-1167.173, 5.15.0.187.167, 5.15.0-187.197, 5.15.0.1065.65, 5.15.0-1065.67, 5.15.0-1065.67~20.04.1, 5.15.0.1076.79~20.04.1, 5.15.0-1076.80, 5.15.0.1096.95, 5.15.0-1096.104, 5.15.0.1105.101, 5.15.0-1105.107, 5.15.0.1105.109, 5.15.0-1105.110, 5.15.0.1107.104, 5.15.0.1107.111, 5.15.0-1107.111~20.04.1, 5.15.0.1108.107, 5.15.0.1108.108, 5.15.0-1108.109, 5.15.0-1108.114, 5.15.0-1108.114~20.04.1, 5.15.0-1110.116~20.04.1, 5.15.0.1112.116, 5.15.0-1112.121, 5.15.0.1113.109, 5.15.0.1113.116, 5.15.0-1113.120, 5.15.0-1113.120+fips1, 5.15.0.1118.103, 5.15.0.1118.116, 5.15.0-1118.127, 5.15.0-1118.127+fips1, 6.8.0-134.134, 6.8.0-1057.58~22.04.1, 6.8.0-1058.61+fips1, 6.8.0-1058.61~22.04.1, 6.8.0-1060.61, 6.8.0-1060.63+fips1, 6.8.0-1060.63~22.04.1, 6.8.0-1063.69, 6.8.0-1063.69+fips1, 6.8.1-1055.56, 6.8.1-1055.56~22.04.1, 6.17.0-40.40
linux-fips (Ubuntu package) - addressed in versions 4.4.0.1127.129, 4.4.0-1127.134, 5.15.0.190.111, 5.15.0-190.200+fips1, 5.15.0.1110.109, 5.15.0-1110.116
linux-aws-hwe (Ubuntu package) - addressed in versions 4.15.0-254.266~16.04.1, 4.15.0-1188.205~16.04.1, 4.15.0-1195.208~16.04.1, 4.15.0-1205.220~16.04.1
linux-oracle (Ubuntu package) - addressed in versions 4.15.0.1158.163, 4.15.0-1158.169, 4.15.0-1158.169~16.04.1, 5.15.0.1110.106, 5.15.0-1110.116
linux-azure (Ubuntu package) - addressed in versions 4.15.0-1205.220~14.04.1, 6.8.0-1063.71, 6.8.0-1063.71~22.04.1
linux-kvm (Ubuntu package) - addressed in versions 5.4.0.1149.145, 5.4.0-1149.158
linux-oracle-5.4 (Ubuntu package) - update to 5.4.0-1161.171~18.04.1
linux-gcp-fips (Ubuntu package) - addressed in versions 5.4.0.1165.107, 5.4.0-1165.174+fips1
linux-azure-5.4 (Ubuntu package) - addressed in versions 5.4.0.1167.103, 5.4.0-1167.173+fips1, 5.4.0-1167.173~18.04.1
kernel - update to 5.10.0-314.0.0.217
python3-perf-debuginfo - update to 5.10.0-314.0.0.217
kernel-headers - update to 5.10.0-314.0.0.217
python3-perf - update to 5.10.0-314.0.0.217
perf-debuginfo - update to 5.10.0-314.0.0.217
perf - update to 5.10.0-314.0.0.217
bpftool - update to 5.10.0-314.0.0.217
bpftool-debuginfo - update to 5.10.0-314.0.0.217
kernel-debuginfo - update to 5.10.0-314.0.0.217
kernel-tools-devel - update to 5.10.0-314.0.0.217
kernel-debugsource - update to 5.10.0-314.0.0.217
kernel-devel - update to 5.10.0-314.0.0.217
kernel-source - update to 5.10.0-314.0.0.217
kernel-tools - update to 5.10.0-314.0.0.217
kernel-tools-debuginfo - update to 5.10.0-314.0.0.217
linux-lowlatency (Ubuntu package) - addressed in versions 5.15.0.190.157, 5.15.0-190.200
linux-azure-5.15 (Ubuntu package) - addressed in versions 5.15.0-190.200~20.04.1, 5.15.0.1114.104, 5.15.0.1114.111, 5.15.0-1114.124, 5.15.0-1114.124+fips1, 5.15.0-1119.128~20.04.1
linux-nvidia-tegra-igx (Ubuntu package) - addressed in versions 5.15.0-1054.54, 5.15.0.1054.56
linux-aws-5.15 (Ubuntu package) - addressed in versions 5.15.0-1114.121~20.04.1, 5.15.0-1114.124~20.04.1
linux-azure-fde-5.15 (Ubuntu package) - update to 5.15.0-1118.127~20.04.1
linux (Debian package) - addressed in versions 6.1.170-1, 6.12.85-1
linux-azure-fips (Ubuntu package) - addressed in versions 6.8.0-134.134+fips1, 6.8.0-1062.69+fips1
linux-hwe-6.8 (Ubuntu package) - update to 6.8.0-136.136~22.04.1
linux-nvidia-tegra (Ubuntu package) - update to 6.8.0-1029.30
linux-aws-6.8 (Ubuntu package) - addressed in versions 6.8.0-1045.48, 6.8.0-1057.58~22.04.1, 6.8.0-1058.61.1, 6.8.0-1058.64, 6.8.0-1060.61~22.04.1, 6.8.0-1060.63~22.04.1, 6.8.0-1063.69~22.04.1
linux-raspi (Ubuntu package) - addressed in versions 6.8.0-1060.64, 6.17.0-1021.21
linux-azure-fde (Ubuntu package) - update to 6.8.0-1062.69
linux-azure-fde-6.8 (Ubuntu package) - update to 6.8.0-1062.69~22.04.1
linux-raspi-realtime (Ubuntu package) - update to 6.8.0-2049.50
linux-hwe-6.17 (Ubuntu package) - update to 6.17.0-40.40~24.04.1
linux-azure-fde-6.17 (Ubuntu package) - update to 6.17.0-1018.18~24.04.1
linux-azure-6.17 (Ubuntu package) - update to 6.17.0-1021.21~24.04.1
linux-nvidia-6.17 (Ubuntu package) - update to 6.17.0-1026.26
linux-oem-6.17 (Ubuntu package) - update to 6.17.0-1028.28

External References

Related Security Bulletins