{"id":"CVE-2026-89567","title":"kernel: jbd2: bound shrinker scans by examined checkpoint buffers (CVE-2026-89567)","summary":"A flaw was found in the Linux kernel's jbd2 shrinker. This component, which manages journal buffers, does not correctly account for busy checkpoint buffers. This oversight can cause the shrinker to hold a critical system lock for an extend…","severity":"medium","cvss":5.5,"cvssVector":"CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H","cvssSource":"vendor","cwe":"CWE-835","vendor":"Red Hat","product":"Red Hat Enterprise Linux 9","affected":["enterprise_linux 10","enterprise_linux 6","enterprise_linux 9","openshift_container_platform 4"],"published":"2026-09-11","updated":"2026-09-15","sourceUpdated":"2026-09-15T16:11:35+00:00","source":"CSAF","sourceUrl":"https://security.access.redhat.com/data/csaf/v2/vex/2026/cve-2026-89567.json","references":[{"url":"https://security.access.redhat.com/data/csaf/v2/vex/2026/cve-2026-89567.json"},{"url":"https://access.redhat.com/security/cve/CVE-2026-89567"},{"url":"https://bugzilla.redhat.com/show_bug.cgi?id=2532120"},{"url":"https://www.cve.org/CVERecord?id=CVE-2026-89567"},{"url":"https://nvd.nist.gov/vuln/detail/CVE-2026-89567"},{"url":"https://git.kernel.org/pub/scm/linux/security/vulns.git/plain/cve/published/2026/CVE-2026-89567.mbox"},{"url":"https://git.kernel.org/stable/c/edf5fcd0469b7467bd5b37a79502c8d9c3257dbb"},{"url":"https://git.kernel.org/stable/c/71c6b872c746465fa4b5def239cb296173ca8216"},{"url":"https://git.kernel.org/stable/c/c2c0fb364685b8996c357d3b050394959b29d6e0"},{"url":"https://git.kernel.org/stable/c/15cb16496446b94e67f7abcb049b8e2c75cd3d02"}],"tags":["csaf","vex","red-hat","cve.org"],"epss":0.002,"epssPercentile":0.10132,"ingestedAt":"2026-09-14T11:11:19.886Z","slug":"CVE-2026-89567","body":"## Overview\n\nA flaw was found in the Linux kernel's jbd2 shrinker. This component, which manages journal buffers, does not correctly account for busy checkpoint buffers. This oversight can cause the shrinker to hold a critical system lock for an extended period when processing many busy buffers. The prolonged lock contention can lead to system unresponsiveness, such as soft lockups or RCU stalls, ultimately resulting in a Denial of Service (DoS).\n\n## Vendor advisories\n\n- **Red Hat VEX** · Moderate · affected: Red Hat Enterprise Linux 10, Red Hat Enterprise Linux 6, Red Hat Enterprise Linux 9, Red Hat OpenShift Container Platform 4 · no fix planned: Red Hat Enterprise Linux 6, Red Hat Enterprise Linux 10, Red Hat Enterprise Linux 9, Red Hat OpenShift Container Platform 4 · updated 2026-09-15 · [vex](https://security.access.redhat.com/data/csaf/v2/vex/2026/cve-2026-89567.json)\n\n**kernel: jbd2: bound shrinker scans by examined checkpoint buffers** — rated Moderate by Red Hat. Released 2026-09-11, updated 2026-09-15.\n\nAffected:\n\n- Red Hat Enterprise Linux 10\n- Red Hat Enterprise Linux 6\n- Red Hat Enterprise Linux 9\n- Red Hat OpenShift Container Platform 4\n\nNo fix planned:\n\n- Red Hat Enterprise Linux 6\n- Red Hat Enterprise Linux 10\n- Red Hat Enterprise Linux 9\n- Red Hat OpenShift Container Platform 4\n\nNot affected:\n\n- Red Hat Enterprise Linux 7\n- Red Hat Enterprise Linux 8\n- Red Hat OpenShift Container Platform 4\n\n## Remediation\n\nOut of support scope","depth":"sunlit","depthScore":30,"depthScoreParts":{"impact":30.3,"likelihood":0,"exploitation":0,"ransomware":0},"changes":[{"seq":204101,"id":"CVE-2026-89567","ts":1789490231439,"field":"cvss","old":null,"new":"5.5"},{"seq":204100,"id":"CVE-2026-89567","ts":1789490231439,"field":"severity","old":"none","new":"medium"},{"seq":147708,"id":"CVE-2026-89567","ts":1789270211966,"field":"cvss","old":null,"new":"4.7"},{"seq":147707,"id":"CVE-2026-89567","ts":1789270211966,"field":"severity","old":"none","new":"medium"},{"seq":109466,"id":"CVE-2026-89567","ts":1789183732024,"field":"cvss","old":null,"new":"4.7"},{"seq":109465,"id":"CVE-2026-89567","ts":1789183732024,"field":"severity","old":"none","new":"medium"}]}