Improper Check for Unusual or Exceptional Conditions in Linux kernel - CVE-2026-43068
Published: May 6, 2026
Linux kernel
Detailed vulnerability description
The vulnerability allows a local user to cause a denial of service.
The vulnerability exists due to improper handling of corrupted block group metadata in ext4_mb_find_by_goal() when allocating blocks in ext4. A local user can trigger block allocation on a corrupted ext4 filesystem to cause a denial of service.
The issue can lead to delayed block allocation failures and data loss warnings when the filesystem repeatedly requests blocks from a corrupted block group.
How to mitigate CVE-2026-43068
Sources
- https://git.kernel.org/stable/c/0b84571c886719823d537f05f4f07cad6357c4b7
- https://git.kernel.org/stable/c/1895f7904be71c48f1e6f338b28f24dabd6b8aeb
- https://git.kernel.org/stable/c/1c0d7c4cde38a887c6d74e0c89ddb25226943c78
- https://git.kernel.org/stable/c/2d31a5073f86a177edf44015e0dedb0c47cfd6d8
- https://git.kernel.org/stable/c/46066e3a06647c5b186cc6334409722622d05c44
- https://git.kernel.org/stable/c/9370207b36d26e45a8c8ef0500706d37036edd6b
- https://git.kernel.org/stable/c/fea6b2e250ff48f10d166011b57a8516ae5438c9
- https://git.kernel.org/stable/c/ffc0a282462d45fee5957621be5afa29752f3b6d