{"id":"CVE-2026-89576","title":"kernel: dm-era: fix shadowed superblock leak on take-snap failure (CVE-2026-89576)","summary":"A flaw was found in the Linux kernel's device-mapper era (dm-era) component. When a snapshot operation fails, a block of metadata is allocated but not properly freed. This leads to a permanent leak of system resources with each failed atte…","severity":"medium","cvss":5.5,"cvssVector":"CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H","cvssSource":"vendor","cwe":"CWE-911","vendor":"Red Hat","product":"Red Hat Enterprise Linux 9","affected":["enterprise_linux 10","enterprise_linux 6","enterprise_linux 8","enterprise_linux 9","openshift_container_platform 4"],"published":"2026-09-11","updated":"2026-09-18","sourceUpdated":"2026-09-18T17:08:42+00:00","source":"CSAF","sourceUrl":"https://security.access.redhat.com/data/csaf/v2/vex/2026/cve-2026-89576.json","references":[{"url":"https://security.access.redhat.com/data/csaf/v2/vex/2026/cve-2026-89576.json"},{"url":"https://access.redhat.com/security/cve/CVE-2026-89576"},{"url":"https://bugzilla.redhat.com/show_bug.cgi?id=2532297"},{"url":"https://www.cve.org/CVERecord?id=CVE-2026-89576"},{"url":"https://nvd.nist.gov/vuln/detail/CVE-2026-89576"},{"url":"https://git.kernel.org/pub/scm/linux/security/vulns.git/plain/cve/published/2026/CVE-2026-89576.mbox"},{"url":"https://git.kernel.org/stable/c/36ff918637e3517f732188a3c39dbeae5b9cfb1b"},{"url":"https://git.kernel.org/stable/c/39c5aa3bd8ec3912d2cd0b3fe092642b0d2b0713"},{"url":"https://git.kernel.org/stable/c/6876ca330e741fb8886d12070cb6a7f9cb67257e"},{"url":"https://git.kernel.org/stable/c/d66ceeefb87ddb097b0546bafc581380b816b048"},{"url":"https://git.kernel.org/stable/c/54dd21ca945ecc07885012b9f3e8197f091cfba0"},{"url":"https://git.kernel.org/stable/c/ef00efb6fcaee88f50891279ceced17c614e97f7"},{"url":"https://git.kernel.org/stable/c/e9fa68b89214bc65af0ef963af7ec3cce9f866e0"},{"url":"https://git.kernel.org/stable/c/dc731d7fddfd6149f5e88ea080475d18c36d3c64"}],"tags":["csaf","vex","red-hat","cve.org"],"epss":0.0021,"epssPercentile":0.11545,"ingestedAt":"2026-09-14T15:23:07.451Z","slug":"CVE-2026-89576","body":"## Overview\n\nA flaw was found in the Linux kernel's device-mapper era (dm-era) component. When a snapshot operation fails, a block of metadata is allocated but not properly freed. This leads to a permanent leak of system resources with each failed attempt. Over time, this resource exhaustion can result in a Denial of Service (DoS), causing the system to become unresponsive or crash.\n\n## Vendor advisories\n\n- **Red Hat VEX** · Low · affected: Red Hat Enterprise Linux 10, Red Hat Enterprise Linux 6, Red Hat Enterprise Linux 8, Red Hat Enterprise Linux 9, Red Hat OpenShift Container Platform 4 · no fix planned: Red Hat Enterprise Linux 6, Red Hat Enterprise Linux 10, Red Hat Enterprise Linux 8, Red Hat Enterprise Linux 9, … · updated 2026-09-18 · [vex](https://security.access.redhat.com/data/csaf/v2/vex/2026/cve-2026-89576.json)\n\n**kernel: dm-era: fix shadowed superblock leak on take-snap failure** — rated Low by Red Hat. Released 2026-09-11, updated 2026-09-18.\n\nAffected:\n\n- Red Hat Enterprise Linux 10\n- Red Hat Enterprise Linux 6\n- Red Hat Enterprise Linux 8\n- Red Hat Enterprise Linux 9\n- Red Hat OpenShift Container Platform 4\n\nNo fix planned:\n\n- Red Hat Enterprise Linux 6\n- Red Hat Enterprise Linux 10\n- Red Hat Enterprise Linux 8\n- Red Hat Enterprise Linux 9\n- Red Hat OpenShift Container Platform 4\n\nNot affected:\n\n- Red Hat Enterprise Linux 7\n\n## Remediation\n\nOut of support scope","depth":"sunlit","depthScore":30,"depthScoreParts":{"impact":30.3,"likelihood":0,"exploitation":0,"ransomware":0},"changes":[{"seq":208161,"id":"CVE-2026-89576","ts":1789922725697,"field":"cvss","old":"4.4","new":"5.5"},{"seq":204009,"id":"CVE-2026-89576","ts":1789490231029,"field":"cvss","old":null,"new":"4.4"},{"seq":204008,"id":"CVE-2026-89576","ts":1789490231029,"field":"severity","old":"none","new":"medium"},{"seq":147422,"id":"CVE-2026-89576","ts":1789270210846,"field":"cvss","old":null,"new":"4.4"},{"seq":147421,"id":"CVE-2026-89576","ts":1789270210846,"field":"severity","old":"none","new":"medium"},{"seq":109174,"id":"CVE-2026-89576","ts":1789183730600,"field":"cvss","old":null,"new":"4.4"},{"seq":109173,"id":"CVE-2026-89576","ts":1789183730600,"field":"severity","old":"none","new":"medium"}]}