CVE-2026-89566

Unknown

Last modified

CVE-2026-89566 is a vulnerability of currently unknown severity. In the Linux kernel, the following vulnerability has been resolved: jbd2: check need_resched() when skipping busy checkpoint buffers journal_shrink_one_cp_list() skips busy checkpoint buffers when called with JBD2_SHRINK_BUSY_SKIP. The continue statement on this path also skips the need_resched() check at the end of the loop body. Consequently, when a checkpoint list contains mostly busy buffers, the shrinker can walk the entire list while holding journal->j_list_lock, even when a reschedule has been requested.

Description

In the Linux kernel, the following vulnerability has been resolved: jbd2: check need_resched() when skipping busy checkpoint buffers journal_shrink_one_cp_list() skips busy checkpoint buffers when called with JBD2_SHRINK_BUSY_SKIP. The continue statement on this path also skips the need_resched() check at the end of the loop body. Consequently, when a checkpoint list contains mostly busy buffers, the shrinker can walk the entire list while holding journal->j_list_lock, even when a reschedule has been requested. Large checkpoint lists under memory pressure can therefore cause long lock hold times and leave other CPUs spinning on j_list_lock, resulting in soft lockups or RCU stalls. Route the busy-buffer path through the need_resched() check so that the shrinker can release j_list_lock and reschedule promptly, restoring parity with the clean-buffer path, which already checks need_resched(). This does not change which checkpoint buffers are eligible for removal.

Affected Software

Source: CNA advisory (CVE.org). NVD analysis pending.

VendorProductVersions
LinuxLinux>= b98dba273a0e47dbfade89c9af73c5b012a4eabb, < f83c23286e54180cdc83a36463a60003534cc290; >= b98dba273a0e47dbfade89c9af73c5b012a4eabb, < f9182a85991a0ad5cd2940df6db75f40ad90028c; >= b98dba273a0e47dbfade89c9af73c5b012a4eabb, < 595cac7f1b32d009b97f83dd2b2d6a1a445e9bb4; >= b98dba273a0e47dbfade89c9af73c5b012a4eabb, < f213e12ff5c9590b1034ae8da0e6d09665c772d0; 9c31bb2684f8035beca0275349d19d679b679ffb; 5fda50e262e65bd553ff777c4b280afd1495a18b; 557fda9ed70ebf8eda2620ba3d746215285a1303; >= 5.15.129, < 5.16; >= 6.1.50, < 6.2; >= 6.4.13, < 6.5
LinuxLinux6.5

References

Timeline

Published
Last Modified
Status
Received

Frequently Asked Questions

What is CVE-2026-89566?
In the Linux kernel, the following vulnerability has been resolved: jbd2: check need_resched() when skipping busy checkpoint buffers journal_shrink_one_cp_list() skips busy checkpoint buffers when called with JBD2_SHRINK_BUSY_SKIP. The continue statement on this path also skips the need_resched() check at the end of the loop body. Consequently, when a checkpoint list contains mostly busy buffers, the shrinker can walk the entire list while holding journal->j_list_lock, even when a reschedule has been requested. Large checkpoint lists under memory pressure can therefore cause long lock hold times and leave other CPUs spinning on j_list_lock, resulting in soft lockups or RCU stalls. Route the busy-buffer path through the need_resched() check so that the shrinker can release j_list_lock and reschedule promptly, restoring parity with the clean-buffer path, which already checks need_resched(). This does not change which checkpoint buffers are eligible for removal.
How severe is CVE-2026-89566?
Severity scoring for CVE-2026-89566 is pending analysis.
How do I fix CVE-2026-89566?
Check the vendor references and advisories linked above for patched versions and mitigation guidance. You can also run a Strix scan to test if your systems are affected.

How Strix Helps

Related CVEs from 2026

Are you affected by CVE-2026-89566?

Run a free Strix scan to check your systems for this vulnerability.

Scan your code now

Source: NVD / NIST