Answer in brief
CVE-2026-80881 records a Unknown severity vulnerability in ocfs2: fix buffer head management in ocfs2_read_blocks(). The current sources do not mark it as known exploited. The current feed maps Linux/Linux (generic), Linux/Linux (generic). Check affected ranges and fixed versions before updating.
Analysis pending evidence review
HOL Guard separates source facts from reviewed analysis. See the methodology.
A CVSS score is not reported in the current record. The current sources do not mark it as known exploited. Treat this as a source-backed prioritization signal, not a statement about your environment.
Analysis status
Analysis pending evidence review
Factual feed record only; HOL analysis is not approved for indexing. Read the methodology.
The current feed maps Linux/Linux (generic), Linux/Linux (generic). Check affected ranges and fixed versions before updating.
| Package | Affected range | Fixed version |
|---|---|---|
| Linux/Linuxgeneric | >=cf76c78595ca87548ca5e45c862ac9e0949c4687 <a4eae1499c760949a93459d11390bd1fd823d31d || >=cf76c78595ca87548ca5e45c862ac9e0949c4687 <4ab17e328522a4df5fe0f0dcf39098118b1feeaa || >=cf76c78595ca87548ca5e45c862ac9e0949c4687 <5927acb3e2c99985a14adecd9d1b67ba191c622d || >=cf76c78595ca87548ca5e45c862ac9e0949c4687 <ecb3f9386f4353034caef77239473c627232db17 || >=cf76c78595ca87548ca5e45c862ac9e0949c4687 <61f7a5acb3bf8fc97dad78f54b1e8d0e1c819766 || >=cf76c78595ca87548ca5e45c862ac9e0949c4687 <0e389fc290c350c67591abf4c367119f4689f310 || >=cf76c78595ca87548ca5e45c862ac9e0949c4687 <9e7a057934cdd58e4cc94350bcfe5367bbee0f8e || >=cf76c78595ca87548ca5e45c862ac9e0949c4687 <6371a07148ee979af22a9d6f4c277462953a9a4a || 01f93d5e36753fc4d06ec67f05ce78c9c6f2dd56 || 65cbd1279f4b999d56a838344a30642db24cd215 || 97e1db17bc1ef4c2e1789bc9323c7be44fba53f8 || 6c150df9c2e80b5cf86f5a0d98beb7390ad63bfc || >=4.4.204 <4.5 || >=4.9.204 <4.10 || >=4.14.157 <4.15 || >=4.19.87 <4.20 | a4eae1499c760949a93459d11390bd1fd823d31d, 4ab17e328522a4df5fe0f0dcf39098118b1feeaa, 5927acb3e2c99985a14adecd9d1b67ba191c622d, ecb3f9386f4353034caef77239473c627232db17, 61f7a5acb3bf8fc97dad78f54b1e8d0e1c819766, 0e389fc290c350c67591abf4c367119f4689f310, 9e7a057934cdd58e4cc94350bcfe5367bbee0f8e, 6371a07148ee979af22a9d6f4c277462953a9a4a, 4.5, 4.10, 4.15, 4.20 |
| Linux/Linuxgeneric | 4.20 | Not reported |
Published upstream
Sep 4, 2026
Evidence: source:cvelist:source_dates:source-dates:recordSource modified
Sep 4, 2026
Evidence: source:cvelist:source_dates:source-dates:recordFirst seen by HOL
Sep 4, 2026
In the Linux kernel, the following vulnerability has been resolved: ocfs2: fix buffer head management in ocfs2_read_blocks() In ocfs2_read_blocks(), caller should't assume that buffer head returned by 'sb_getblk()' is exclusively owned and so 'put_bh()' always drops b_count from 1 to 0. If it is not so, buffer head remains on hold and likely to be returned by the next call to 'sb_getblk()' unchanged - that is, with BH_Uptodate bit set even if it has failed validation previously, thus allowing to insert that buffer head into OCFS2 metadata cache and submit it to upper layers. To avoid such a scenario, BH_Uptodate should be cleared immediately after 'validate()' callback has detected some data inconsistency.
Quoted source text, attributed separately from HOL analysis.