CVE-2026-89456High· 7.0▾ TwilightA flaw was found in the Linux kernel. Specifically, within the s390/dasd component, an issue exists during error recovery for disk read operations. When a request is partially completed and then recovered, the system fails to correctly pro…
▾ Twilight zone — High severity, or a signal on a lesser flaw
impact 38.5 · likelihood 0 · exploitation 0
Need a working PoC? Pro members can cast a request and our team develops one — it lands right here.
Exploit-prediction probability, daily snapshots since Sep 12.
Disclosure to exploitation, from the record and what we observed since indexing it.
Disclosed via CSAF
0.2%
— → 5.2
none → medium
— → 5.2
none → medium
— → 7
none → high
7 → 5.2
high → medium
5.2 → 7
medium → high
Last analysed / modified upstream
A flaw was found in the Linux kernel. Specifically, within the s390/dasd component, an issue exists during error recovery for disk read operations. When a request is partially completed and then recovered, the system fails to correctly propagate the length of the processed data. This can lead to the kernel silently returning zeroed data for the unread portion of a request, potentially resulting in information disclosure to a local attacker.
kernel: s390/dasd: Propagate partial completion length across ERP recovery — rated Moderate by Red Hat. Released 2026-09-11, updated 2026-09-17.
Affected:
No fix planned:
Not affected:
Affected
Field changes observed since this record was first indexed.
Connected by shared product, vendor, weakness, or advisory.
CVE-2026-81016Medium· 5.5kernel: platform/x86/amd/pmc: Propagate SMU errors and validate S2D address (CVE-2026-81016)
CVE-2026-80970High· 7.0kernel: ALSA: FCP: do not copy out an uninitialised init response (CVE-2026-80970)
CVE-2026-80948Medium· 5.5kernel: wifi: iwlwifi: dvm: fix memory leak in iwl_op_mode_dvm_start() (CVE-2026-80948)
CVE-2026-80936Medium· 5.5kernel: wifi: mt76: mt7925: cancel mlo_pm_work on stop (CVE-2026-80936)
CVE-2026-80947High· 7.0kernel: wifi: rtl8xxxu: fix use-after-free from rx_urb_wq on stop (CVE-2026-80947)
CVE-2026-80980Medium· 5.5kernel: net/smc: stop killed, freed and out_of_sync sharing a byte (CVE-2026-80980)