{"id":"CVE-2026-64058","title":"netfs: Fix netfs_read_folio() to wait on writeback","summary":"In the Linux kernel, the following vulnerability has been resolved:\n\nnetfs: Fix netfs_read_folio() to wait on writeback\n\nFix netfs_read_folio() to wait for an ongoing writeback to complete so that\nit can trust the dirty flag and whatever…","severity":"high","cvss":7.8,"cvssVector":"CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H","cvssSource":"cna","vendor":"Linux","product":"Linux","affected":["Linux >= ee4cdf7ba857a894ad1650d6ab77669cbbfa329e < 090a8aa1894b72f5b3fc18dee68d42ad45f4a2c6","Linux >= ee4cdf7ba857a894ad1650d6ab77669cbbfa329e < f17b9121bb99f88188ec9be2db5da1d561f4c01b","Linux >= ee4cdf7ba857a894ad1650d6ab77669cbbfa329e < b8271cccdd5e43cc8d738afb8b51f6ad05b1cb4b","Linux >= ee4cdf7ba857a894ad1650d6ab77669cbbfa329e < ded0c6f1606061148c202825f7e53d711f9f84cf","Linux 6.12"],"published":"2026-07-19","updated":"2026-09-14","sourceUpdated":"2026-09-14T11:58:36.477Z","source":"CVEORG","sourceUrl":"https://www.cve.org/CVERecord?id=CVE-2026-64058","references":[{"url":"https://git.kernel.org/stable/c/090a8aa1894b72f5b3fc18dee68d42ad45f4a2c6"},{"url":"https://git.kernel.org/stable/c/f17b9121bb99f88188ec9be2db5da1d561f4c01b"},{"url":"https://git.kernel.org/stable/c/b8271cccdd5e43cc8d738afb8b51f6ad05b1cb4b"},{"url":"https://git.kernel.org/stable/c/ded0c6f1606061148c202825f7e53d711f9f84cf"}],"tags":["cve.org"],"epss":0.00129,"epssPercentile":0.02875,"ingestedAt":"2026-09-14T15:23:07.457Z","slug":"CVE-2026-64058","body":"## Overview\n\nIn the Linux kernel, the following vulnerability has been resolved:\n\nnetfs: Fix netfs_read_folio() to wait on writeback\n\nFix netfs_read_folio() to wait for an ongoing writeback to complete so that\nit can trust the dirty flag and whatever is attached to folio->private\n(folio->private may get cleaned up by the collector before it clears the\nwriteback flag).\n\n## Affected\n\n- `Linux >= ee4cdf7ba857a894ad1650d6ab77669cbbfa329e < 090a8aa1894b72f5b3fc18dee68d42ad45f4a2c6`\n- `Linux >= ee4cdf7ba857a894ad1650d6ab77669cbbfa329e < f17b9121bb99f88188ec9be2db5da1d561f4c01b`\n- `Linux >= ee4cdf7ba857a894ad1650d6ab77669cbbfa329e < b8271cccdd5e43cc8d738afb8b51f6ad05b1cb4b`\n- `Linux >= ee4cdf7ba857a894ad1650d6ab77669cbbfa329e < ded0c6f1606061148c202825f7e53d711f9f84cf`\n- `Linux 6.12`\n\n## Remediation\n\nRefer to the linked advisories for vendor-supplied fixes and affected version ranges.","depth":"twilight","depthScore":43,"depthScoreParts":{"impact":42.9,"likelihood":0,"exploitation":0,"ransomware":0},"changes":[]}