๐Ÿ” CVE Alert

CVE-2026-89456

HIGH 7.0

s390/dasd: Propagate partial completion length across ERP recovery

CVSS Score
7.0
EPSS Score
0.0%
EPSS Percentile
0th

In the Linux kernel, the following vulnerability has been resolved: s390/dasd: Propagate partial completion length across ERP recovery dasd_default_erp_postaction() copies the timing and device state from the finished ERP request back to the original request but drops proc_bytes. A request that was partially completed, an ESE read of a not-yet-allocated track returns fewer bytes than requested, and then recovered through the ERP chain loses its partial-completion length. __dasd_cleanup_cqr() then sees proc_bytes == 0 and completes the whole request instead of requeueing the remainder, silently returning zeroed data for the part that was never read. Carry proc_bytes over to the original request like the other per-request state.

Vendor linux
Product linux
Ecosystems
Industries
Technology
Published Sep 11, 2026
Last Updated Sep 14, 2026
Stay Ahead of the Next One

Get instant alerts for linux linux

Be the first to know when new high vulnerabilities affecting linux linux are published โ€” delivered to Slack, Telegram or Discord.

Get Free Alerts โ†’ Free ยท No credit card ยท 60 sec setup

CVSS v3 Breakdown

CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H
Attack Vector
Attack Complexity
Privileges Required
User Interaction
Scope
Confidentiality
Integrity
Availability

Affected Versions

Linux / Linux
5e6bdd37c5526ef01326df5dabb93011ee89237e < 9e063165d3fe58db2a517717b830f17e82d03467 5e6bdd37c5526ef01326df5dabb93011ee89237e < 6b0954c8a259da1e4aa745989f82723947acfb46 5e6bdd37c5526ef01326df5dabb93011ee89237e < d0a2f97d8c97134aa7f6a191940b7bab4bb42f5f 5e6bdd37c5526ef01326df5dabb93011ee89237e < f735b9710f0c8fe72c1060103e865f4ae678190b 5e6bdd37c5526ef01326df5dabb93011ee89237e < d6b8778b1b82aa3a8dbf8612080f635b834bd16b 5e6bdd37c5526ef01326df5dabb93011ee89237e < ceafb262475ac6cb3a7d07b1102608be2b216b99 5e6bdd37c5526ef01326df5dabb93011ee89237e < 15ec03452c18e8d288e519837d21b308300d74b2 5e6bdd37c5526ef01326df5dabb93011ee89237e < 6fb5ba2e7e43173a3761e46f091070a8185efa14 fbbacd0dcbc3ae9398c569dbea96ae4b5ad97e04 5f7c9989f11305aaa43e0f4378f4f070022a9f2b 5.4.26 < 5.5 5.5.10 < 5.6
Linux / Linux
5.6

References

NVD โ†— CVE.org โ†— EPSS Data โ†—
git.kernel.org: https://git.kernel.org/stable/c/9e063165d3fe58db2a517717b830f17e82d03467 git.kernel.org: https://git.kernel.org/stable/c/6b0954c8a259da1e4aa745989f82723947acfb46 git.kernel.org: https://git.kernel.org/stable/c/d0a2f97d8c97134aa7f6a191940b7bab4bb42f5f git.kernel.org: https://git.kernel.org/stable/c/f735b9710f0c8fe72c1060103e865f4ae678190b git.kernel.org: https://git.kernel.org/stable/c/d6b8778b1b82aa3a8dbf8612080f635b834bd16b git.kernel.org: https://git.kernel.org/stable/c/ceafb262475ac6cb3a7d07b1102608be2b216b99 git.kernel.org: https://git.kernel.org/stable/c/15ec03452c18e8d288e519837d21b308300d74b2 git.kernel.org: https://git.kernel.org/stable/c/6fb5ba2e7e43173a3761e46f091070a8185efa14