Always-Incorrect Control Flow Implementation in Linux kernel - CVE-2026-97547
Published: September 28, 2026
Vulnerability details
The vulnerability allows a local user to cause data corruption between reflink-related files.
The vulnerability exists due to improper reflink flag handling in xmi_can_exchange_reflink_flags in XFS exchange-range operations when exchanging full-file ranges with XFS_EXCHMAPS_INO1_WRITTEN requested. A local user can exchange full-file ranges between files with shared extents to cause data corruption between reflink-related files.
Hole and unwritten mappings from the first file can be skipped during the exchange.