---
id: CVE-2026-89566
title: |-
  In the Linux kernel, the following vulnerability has been resolved:

  jbd2: check need_resched() when skipping busy checkpoint buffers

  journal_shrink_one_cp_list() skips busy checkpoint buffers when called
  with JBD2_SHRINK_BUSY_SKIP
summary: |-
  In the Linux kernel, the following vulnerability has been resolved:

  jbd2: check need_resched() when skipping busy checkpoint buffers

  journal_shrink_one_cp_list() skips busy checkpoint buffers when called
  with JBD2_SHRINK_BUSY_SKIP.  Th…
severity: medium
vendor: Linux
product: Linux
affected:
  - >-
    Linux >= b98dba273a0e47dbfade89c9af73c5b012a4eabb <
    f83c23286e54180cdc83a36463a60003534cc290
  - >-
    Linux >= b98dba273a0e47dbfade89c9af73c5b012a4eabb <
    f9182a85991a0ad5cd2940df6db75f40ad90028c
  - >-
    Linux >= b98dba273a0e47dbfade89c9af73c5b012a4eabb <
    595cac7f1b32d009b97f83dd2b2d6a1a445e9bb4
  - >-
    Linux >= b98dba273a0e47dbfade89c9af73c5b012a4eabb <
    f213e12ff5c9590b1034ae8da0e6d09665c772d0
  - Linux 9c31bb2684f8035beca0275349d19d679b679ffb
  - Linux 5fda50e262e65bd553ff777c4b280afd1495a18b
  - Linux 557fda9ed70ebf8eda2620ba3d746215285a1303
  - Linux >= 5.15.129 < 5.16
  - Linux >= 6.1.50 < 6.2
  - Linux >= 6.4.13 < 6.5
  - Linux 6.5
published: '2026-09-11'
updated: '2026-09-11'
sourceUpdated: '2026-09-11T20:19:40.550'
source: NVD
sourceUrl: 'https://nvd.nist.gov/vuln/detail/CVE-2026-89566'
references:
  - url: 'https://git.kernel.org/stable/c/595cac7f1b32d009b97f83dd2b2d6a1a445e9bb4'
    label: 416baaa9-dc9f-4396-8d5f-8c081fb06d67
  - url: 'https://git.kernel.org/stable/c/f213e12ff5c9590b1034ae8da0e6d09665c772d0'
    label: 416baaa9-dc9f-4396-8d5f-8c081fb06d67
  - url: 'https://git.kernel.org/stable/c/f83c23286e54180cdc83a36463a60003534cc290'
    label: 416baaa9-dc9f-4396-8d5f-8c081fb06d67
  - url: 'https://git.kernel.org/stable/c/f9182a85991a0ad5cd2940df6db75f40ad90028c'
    label: 416baaa9-dc9f-4396-8d5f-8c081fb06d67
  - url: >-
      https://security.access.redhat.com/data/csaf/v2/vex/2026/cve-2026-89566.json
  - url: 'https://access.redhat.com/security/cve/CVE-2026-89566'
  - url: 'https://bugzilla.redhat.com/show_bug.cgi?id=2532052'
  - url: 'https://www.cve.org/CVERecord?id=CVE-2026-89566'
  - url: 'https://nvd.nist.gov/vuln/detail/CVE-2026-89566'
  - url: >-
      https://git.kernel.org/pub/scm/linux/security/vulns.git/plain/cve/published/2026/CVE-2026-89566.mbox
tags:
  - nvd
  - cve.org
  - csaf
  - vex
  - red-hat
ingestedAt: '2026-09-14T13:21:23.054Z'
epss: 0.00209
epssPercentile: 0.0996
cvss: 5.5
cvssVector: 'CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H'
cvssSource: vendor
cwe:
  - CWE-606
---

## Overview

In the Linux kernel, the following vulnerability has been resolved:

jbd2: check need_resched() when skipping busy checkpoint buffers

journal_shrink_one_cp_list() skips busy checkpoint buffers when called
with JBD2_SHRINK_BUSY_SKIP.  The continue statement on this path also
skips the need_resched() check at the end of the loop body.

Consequently, when a checkpoint list contains mostly busy buffers, the
shrinker can walk the entire list while holding journal->j_list_lock,
even when a reschedule has been requested.  Large checkpoint lists under
memory pressure can therefore cause long lock hold times and leave other
CPUs spinning on j_list_lock, resulting in soft lockups or RCU stalls.

Route the busy-buffer path through the need_resched() check so that the
shrinker can release j_list_lock and reschedule promptly, restoring
parity with the clean-buffer path, which already checks need_resched().
This does not change which checkpoint buffers are eligible for removal.

## Remediation

Refer to the linked advisories for vendor-supplied fixes and affected version ranges.

## Vendor advisories

- **Red Hat VEX** · Low · affected: Red Hat Enterprise Linux 10, Red Hat Enterprise Linux 6, Red Hat Enterprise Linux 9, Red Hat OpenShift Container Platform 4 · no fix planned: Red Hat Enterprise Linux 6, Red Hat Enterprise Linux 10, Red Hat Enterprise Linux 9, Red Hat OpenShift Container Platform 4 · updated 2026-09-14 · [vex](https://security.access.redhat.com/data/csaf/v2/vex/2026/cve-2026-89566.json)
