---
id: CVE-2026-98120
title: |-
  In the Linux kernel, the following vulnerability has been resolved:

  netfs: Fix subreq ref leak

  Fix a subrequest ref leak in netfs_unbuffered_write() in the event that
  subreq->io_iter ends up zero length during preparation.
summary: |-
  In the Linux kernel, the following vulnerability has been resolved:

  netfs: Fix subreq ref leak

  Fix a subrequest ref leak in netfs_unbuffered_write() in the event that
  subreq->io_iter ends up zero length during preparation.
severity: none
vendor: Linux
product: Linux
affected:
  - >-
    Linux >= 72d08d2839649d1c5efbe375751f4473fa4486af <
    ebefb12122d1319257ecac01c1a928f78007716a
  - >-
    Linux >= a0b4c7a49137ed21279f354eb59f49ddae8dffc2 <
    0a573f4283a965a5e8716f621aec404cb4575328
  - >-
    Linux >= a0b4c7a49137ed21279f354eb59f49ddae8dffc2 <
    3c30087e27598d9d359763e8be9bd3017fe08348
  - Linux 0c29f6d63122a0168d67cb8ecde5b4cf7fe4acb0
  - Linux >= 6.18.17 < 6.18.53
  - Linux >= 6.19.7 < 6.20
  - Linux 7.0
published: '2026-09-25'
updated: '2026-09-25'
sourceUpdated: '2026-09-25T11:17:43.253'
source: NVD
sourceUrl: 'https://nvd.nist.gov/vuln/detail/CVE-2026-98120'
references:
  - url: 'https://git.kernel.org/stable/c/0a573f4283a965a5e8716f621aec404cb4575328'
    label: 416baaa9-dc9f-4396-8d5f-8c081fb06d67
  - url: 'https://git.kernel.org/stable/c/3c30087e27598d9d359763e8be9bd3017fe08348'
    label: 416baaa9-dc9f-4396-8d5f-8c081fb06d67
  - url: 'https://git.kernel.org/stable/c/ebefb12122d1319257ecac01c1a928f78007716a'
    label: 416baaa9-dc9f-4396-8d5f-8c081fb06d67
tags:
  - nvd
  - cve.org
ingestedAt: '2026-09-25T11:06:38.820Z'
---

## Overview

In the Linux kernel, the following vulnerability has been resolved:

netfs: Fix subreq ref leak

Fix a subrequest ref leak in netfs_unbuffered_write() in the event that
subreq->io_iter ends up zero length during preparation.

## Remediation

Refer to the linked advisories for vendor-supplied fixes and affected version ranges.
