CVE-2026-89772High· 7.0▾ TwilightA flaw was found in the Btrfs filesystem of the Linux kernel. This vulnerability allows a local attacker with write access to a memory-mapped file to modify data while it is being written to disk. This can lead to data corruption, where th…
▾ Twilight zone — High severity, or a signal on a lesser flaw
impact 38.5 · likelihood 0 · exploitation 0
Need a working PoC? Pro members can cast a request and our team develops one — it lands right here.
Exploit-prediction probability, daily snapshots since Sep 12.
Disclosure to exploitation, from the record and what we observed since indexing it.
Disclosed via CSAF
0.2%
— → 6.3
none → medium
— → 6.3
none → medium
Last analysed / modified upstream
— → 6.3
none → medium
6.3 → 7
medium → high
A flaw was found in the Btrfs filesystem of the Linux kernel. This vulnerability allows a local attacker with write access to a memory-mapped file to modify data while it is being written to disk. This can lead to data corruption, where the integrity of the stored information is compromised, or data loss, where recent changes to a file are not saved correctly even after a save operation. The issue arises from a missing write-protection mechanism during specific data writeback operations.
kernel: btrfs: write-protect folios during data writeback — rated Moderate by Red Hat. Released 2026-09-11, updated 2026-09-15.
Affected:
No fix planned:
Fix deferred
Field changes observed since this record was first indexed.
Connected by shared product, vendor, weakness, or advisory.
CVE-2026-92615Medium· 6.6A flaw was found in flightctl
CVE-2026-80950Medium· 5.5kernel: i3c: renesas: Check that the transfer is valid before accessing it (CVE-2026-80950)
CVE-2026-80953Medium· 5.5kernel: i3c: master: adi: initialize the lock before enabling interrupts (CVE-2026-80953)
CVE-2026-80954Medium· 5.5kernel: i3c: Fix unlocked dereference of dev->desc in i3c_device_get_supported_xfer_mode() (CVE-2026-80954)
CVE-2026-80958Medium· 5.5kernel: dm-pcache: clamp the tail kset read to the segment data region (CVE-2026-80958)
CVE-2026-80959Medium· 5.5kernel: dm-pcache: bound the persisted tail-position offset (CVE-2026-80959)