PT-2026-2510 · Linux+3 · Linux Kernel+3

Published

2025-11-27

·

Updated

2026-05-11

·

CVE-2025-68778

CVSS v2.0

4.6

Medium

VectorAV:L/AC:L/Au:S/C:N/I:N/A:C
Name of the Vulnerable Software and Affected Versions Linux kernel (affected versions not specified)
Description The Linux kernel contains a flaw within the Btrfs file system related to handling directory moves during transactions. Specifically, the system may incorrectly log inode information when a directory is moved and a new file with the same name is created in the original location before the move is fully committed. This can lead to a scenario where, after a power failure and subsequent file system replay, the file system detects an invalid hard link count for a directory, resulting in a mount failure. The issue arises from attempting to have a directory with two hard links during log replay, one for the old parent directory and another for the new parent directory. The error messages observed in dmesg/syslog indicate a corrupt leaf node with an invalid nlink value.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Exploit

Weakness Enumeration

Related Identifiers

AZL-74348
BDU:2026-00888
CVE-2025-68778
ECHO-CE43-2349-5ED1
MGASA-2026-0017
MGASA-2026-0018
OPENSUSE-SU-2026:20287-1
SUSE-SU-2026:0962-1
SUSE-SU-2026:1081-1
SUSE-SU-2026:20555-1
SUSE-SU-2026:20599-1
SUSE-SU-2026:20615-1
SUSE-SU-2026:20667-1
SUSE-SU-2026:20720-1
SUSE-SU-2026:20845-1
SUSE-SU-2026:20876-1
USN-8177-1
USN-8177-2
USN-8179-1
USN-8179-2
USN-8179-3
USN-8179-4
USN-8183-1
USN-8183-2
USN-8184-1
USN-8185-1
USN-8185-2
USN-8203-1
USN-8204-1
USN-8245-1
USN-8257-1
USN-8258-1
USN-8260-1
USN-8261-1
USN-8265-1

Affected Products

Btrfs
Linuxmint
Linux Kernel
Ubuntu