๐Ÿ” CVE Alert

CVE-2026-46107

HIGH 7.8

dm-thin: fix metadata refcount underflow

CVSS Score
7.8
EPSS Score
0.0%
EPSS Percentile
0th

In the Linux kernel, the following vulnerability has been resolved: dm-thin: fix metadata refcount underflow There's a bug in dm-thin in the function rebalance_children. If the internal btree node has one entry, the code tries to copy all btree entries from the node's child to the node itself and then decrement the child's reference count. If the child node is shared (it has reference count > 1), we won't free it, so there would be two pointers to each of the grandchildren nodes. But the reference counts of the grandchildren is not increased, thus the reference count doesn't match the number of pointers that point to the grandchildren. This results in "device mapper: space map common: unable to decrement block" errors. Fix this bug by incrementing reference counts on the grandchildren if the btree node is shared.

Vendor linux
Product linux
Ecosystems
Industries
Technology
Published May 28, 2026
Last Updated Jun 1, 2026
Stay Ahead of the Next One

Get instant alerts for linux linux

Be the first to know when new high vulnerabilities affecting linux linux are published โ€” delivered to Slack, Telegram or Discord.

Get Free Alerts โ†’ Free ยท No credit card ยท 60 sec setup

CVSS v3 Breakdown

CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Attack Vector
Attack Complexity
Privileges Required
User Interaction
Scope
Confidentiality
Integrity
Availability

Affected Versions

Linux / Linux
3241b1d3e0aaafbfcd320f4d71ade629728cc4f4 < f49b41c9eb7c6ff00df27cd49cea210abbadd8ad 3241b1d3e0aaafbfcd320f4d71ade629728cc4f4 < f06f6aededd792a754cd677c02b3d3016d868c2c 3241b1d3e0aaafbfcd320f4d71ade629728cc4f4 < 12161e03d33afce781f68fa11cc6060538862fad 3241b1d3e0aaafbfcd320f4d71ade629728cc4f4 < 323d252a4a378834e4fe68298ca61cfc5dd3a460 3241b1d3e0aaafbfcd320f4d71ade629728cc4f4 < 85311a585a26640760cd0f3349ab9f2905691044 3241b1d3e0aaafbfcd320f4d71ade629728cc4f4 < 5ec0debbcfd43596e32c1239e993de06a704e04c 3241b1d3e0aaafbfcd320f4d71ade629728cc4f4 < 09a65adc7d8bbfce06392cb6d375468e2728ead5
Linux / Linux
3.2

References

NVD โ†— CVE.org โ†— EPSS Data โ†—
git.kernel.org: https://git.kernel.org/stable/c/f49b41c9eb7c6ff00df27cd49cea210abbadd8ad git.kernel.org: https://git.kernel.org/stable/c/f06f6aededd792a754cd677c02b3d3016d868c2c git.kernel.org: https://git.kernel.org/stable/c/12161e03d33afce781f68fa11cc6060538862fad git.kernel.org: https://git.kernel.org/stable/c/323d252a4a378834e4fe68298ca61cfc5dd3a460 git.kernel.org: https://git.kernel.org/stable/c/85311a585a26640760cd0f3349ab9f2905691044 git.kernel.org: https://git.kernel.org/stable/c/5ec0debbcfd43596e32c1239e993de06a704e04c git.kernel.org: https://git.kernel.org/stable/c/09a65adc7d8bbfce06392cb6d375468e2728ead5