๐Ÿ” CVE Alert

CVE-2026-90333

UNKNOWN 0.0

dm-integrity: replace forgeable discard filler with a keyed sector marker

CVSS Score
0.0
EPSS Score
0.0%
EPSS Percentile
0th

In the Linux kernel, the following vulnerability has been resolved: dm-integrity: replace forgeable discard filler with a keyed sector marker The discard-block check in dm_integrity_rw_tag() treats a stored tag of all 0xf6 bytes (DISCARD_FILLER) as proof a block was discarded and skips HMAC verification. allow_discards is only accepted in dm-integrity's standalone mode. An attacker with raw write access to the backing device, but without the integrity key, can stamp any block with an all-0xf6 tag and have it served as authentic. Add a new "allow_discards_keyed" target argument that marks discarded blocks with a keyed checksum of (salt || sector) instead, computed by integrity_discard_checksum().

Vendor linux
Product linux
Ecosystems
Industries
Technology
Published Sep 17, 2026
Stay Ahead of the Next One

Get instant alerts for linux linux

Be the first to know when new unknown vulnerabilities affecting linux linux are published โ€” delivered to Slack, Telegram or Discord.

Get Free Alerts โ†’ Free ยท No credit card ยท 60 sec setup

Affected Versions

Linux / Linux
84597a44a9d86ac949900441cea7da0af0f2f473 < 5c58ea19a909ef6bed4f0f824e9cd7e30d7e4775 84597a44a9d86ac949900441cea7da0af0f2f473 < 6228722c27304e4682cddc1fede03898f87e4414 84597a44a9d86ac949900441cea7da0af0f2f473 < 68c5c42567bc462139128968ebbfadd0aefff519
Linux / Linux
5.7

References

NVD โ†— CVE.org โ†— EPSS Data โ†—
git.kernel.org: https://git.kernel.org/stable/c/5c58ea19a909ef6bed4f0f824e9cd7e30d7e4775 git.kernel.org: https://git.kernel.org/stable/c/6228722c27304e4682cddc1fede03898f87e4414 git.kernel.org: https://git.kernel.org/stable/c/68c5c42567bc462139128968ebbfadd0aefff519