๐Ÿ” CVE Alert

CVE-2026-98091

UNKNOWN 0.0

btrfs: detach failed sprout device from transaction update list

CVSS Score
0.0
EPSS Score
0.0%
EPSS Percentile
0th

In the Linux kernel, the following vulnerability has been resolved: btrfs: detach failed sprout device from transaction update list When creating the first metadata chunk for a sprout filesystem, create_chunk() adds the new device to the transaction dev_update_list through device->post_commit_list. If the subsequent system chunk creation fails, btrfs_init_new_device() aborts the transaction and releases the device while post_commit_list is still linked. This triggers a warning in btrfs_free_device() and leaves the transaction list referencing freed memory. Detach the device while holding chunk_mutex before releasing it.

Vendor linux
Product linux
Ecosystems
Industries
Technology
Published Sep 25, 2026
Stay Ahead of the Next One

Get instant alerts for linux linux

Be the first to know when new unknown vulnerabilities affecting linux linux are published โ€” delivered to Slack, Telegram or Discord.

Get Free Alerts โ†’ Free ยท No credit card ยท 60 sec setup

Affected Versions

Linux / Linux
bbbf7243d62d8be73b7ef60721c127b36b2d523e < e9e7e37afa85db770e6084360b21a21a8b3a583f bbbf7243d62d8be73b7ef60721c127b36b2d523e < 8b001df2b37ca022f710f3254fbb0bcd6d9e1bed bbbf7243d62d8be73b7ef60721c127b36b2d523e < 0ea6814bc0ff7cff443241bd34db9f0f828f3190 bbbf7243d62d8be73b7ef60721c127b36b2d523e < c93b3c43df561cd9f592cee20ae058b563f9e5b6
Linux / Linux
5.2

References

NVD โ†— CVE.org โ†— EPSS Data โ†—
git.kernel.org: https://git.kernel.org/stable/c/e9e7e37afa85db770e6084360b21a21a8b3a583f git.kernel.org: https://git.kernel.org/stable/c/8b001df2b37ca022f710f3254fbb0bcd6d9e1bed git.kernel.org: https://git.kernel.org/stable/c/0ea6814bc0ff7cff443241bd34db9f0f828f3190 git.kernel.org: https://git.kernel.org/stable/c/c93b3c43df561cd9f592cee20ae058b563f9e5b6