Incorrect calculation in Linux kernel - CVE-2026-100073
Published: September 28, 2026
Vulnerability details
The vulnerability allows a local user to cause a transaction overflow.
The vulnerability exists due to incorrect transaction credit calculation in the ext4 writeback extent-conversion logic when performing ext4 writeback that requires extent conversion. A local user can trigger ext4 writeback requiring extent conversion to cause a transaction overflow.
This may occur when sparse folio dirtying requires a large unwritten extent to be split into multiple written extents and new extent-tree nodes to be allocated.