---
id: CVE-2026-97489
title: "In the Linux kernel, the following vulnerability has been resolved:\n\nbfs: handle set_blocksize failures\n\nbfs uses buffer_heads, which don't handle block size > PAGE_SIZE well.\nWithout this, mounting will hit the\n\n\tBUG_ON(offset >= folio_…"
summary: "In the Linux kernel, the following vulnerability has been resolved:\n\nbfs: handle set_blocksize failures\n\nbfs uses buffer_heads, which don't handle block size > PAGE_SIZE well.\nWithout this, mounting will hit the\n\n\tBUG_ON(offset >= folio_…"
severity: none
vendor: Linux
product: Linux
affected:
  - >-
    Linux >= 1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 <
    7cc713b29eecc0189a184e82f42d174fddaa9e1e
  - >-
    Linux >= 1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 <
    ab1d6160d26e6ee8939e994999be9b45e90a42ef
  - >-
    Linux >= 1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 <
    2430e3380936df0b648af720cae624eef035a2d1
  - Linux < 6.12.111
  - Linux < 6.18.53
  - Linux (all versions)
published: '2026-09-24'
updated: '2026-09-24'
sourceUpdated: '2026-09-24T17:17:26.490'
source: NVD
sourceUrl: 'https://nvd.nist.gov/vuln/detail/CVE-2026-97489'
references:
  - url: 'https://git.kernel.org/stable/c/2430e3380936df0b648af720cae624eef035a2d1'
    label: 416baaa9-dc9f-4396-8d5f-8c081fb06d67
  - url: 'https://git.kernel.org/stable/c/7cc713b29eecc0189a184e82f42d174fddaa9e1e'
    label: 416baaa9-dc9f-4396-8d5f-8c081fb06d67
  - url: 'https://git.kernel.org/stable/c/ab1d6160d26e6ee8939e994999be9b45e90a42ef'
    label: 416baaa9-dc9f-4396-8d5f-8c081fb06d67
tags:
  - nvd
  - cve.org
ingestedAt: '2026-09-24T16:47:15.868Z'
---

## Overview

In the Linux kernel, the following vulnerability has been resolved:

bfs: handle set_blocksize failures

bfs uses buffer_heads, which don't handle block size > PAGE_SIZE well.
Without this, mounting will hit the

	BUG_ON(offset >= folio_size(folio));

in folio_set_bh on the first __bread_gfp call.

## Remediation

Refer to the linked advisories for vendor-supplied fixes and affected version ranges.
