PT-2026-34358 · Linux · Linux Kernel

Published

2026-04-22

·

Updated

2026-05-06

·

CVE-2026-31453

CVSS v3.1

7.8

High

VectorAV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions Linux kernel (affected versions not specified)
Description An issue exists in the XFS file system where log items may be dereferenced after push callbacks. Specifically, after the xfsaild push item() function calls iop push(), the log item might have been freed if the AIL lock was dropped during the push process. This can occur during background inode reclaim or the dquot shrinker, leading to a situation where tracepoints in the switch statement attempt to access a freed log item.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

NULL Pointer Dereference

Weakness Enumeration

Related Identifiers

CVE-2026-31453
ECHO-CA0B-414A-9E9B

Affected Products

Linux Kernel