« Volver al listado

CVE-2026-31514

Estado: AnalizadaMedia (5.5)—

In the Linux kernel, the following vulnerability has been resolved:

erofs: set fileio bio failed in short read case

For file-backed mount, IO requests are handled by vfs_iocb_iter_read(). However, it can be interrupted by SIGKILL, returning the number of bytes actually copied. Unused folios in bio are unexpectedly marked as uptodate.

This patch addresses this by setting short read bio with an error directly.

Detalles técnicos trazas, registros y código del informe original
  vfs_read
    filemap_read
      filemap_get_pages
        filemap_readahead
          erofs_fileio_readahead
            erofs_fileio_rq_submit
              vfs_iocb_iter_read
                filemap_read
                  filemap_get_pages  <= detect signal
              erofs_fileio_ki_complete  <= set all folios uptodate

CVSS

Probabilidad de explotación (EPSS)

EPSS (Exploit Prediction Scoring System, de FIRST) estima la probabilidad de que una vulnerabilidad sea explotada en 30 días. Complementa a CVSS (impacto) y a CISA KEV (explotación confirmada).

Tecnologías afectadas (1)

CWE

Referencias

JSON original (NVD)

Mostrar
{
  "id": "CVE-2026-31514",
  "cveTags": [],
  "metrics": {
    "cvssMetricV31": [
      {
        "type": "Primary",
        "source": "nvd@nist.gov",
        "cvssData": {
          "scope": "UNCHANGED",
          "version": "3.1",
          "baseScore": 5.5,
          "attackVector": "LOCAL",
          "baseSeverity": "MEDIUM",
          "vectorString": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H",
          "integrityImpact": "NONE",
          "userInteraction": "NONE",
          "attackComplexity": "LOW",
          "availabilityImpact": "HIGH",
          "privilegesRequired": "LOW",
          "confidentialityImpact": "NONE"
        },
        "impactScore": 3.6,
        "exploitabilityScore": 1.8
      }
    ]
  },
  "affected": [
    {
      "source": "416baaa9-dc9f-4396-8d5f-8c081fb06d67",
      "affectedData": [
        {
          "repo": "https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git",
          "vendor": "Linux",
          "product": "Linux",
          "versions": [
            {
              "status": "affected",
              "version": "8d582d65d20bb4796db01b19e86909ad68cb337b",
              "lessThan": "d1ba7d6b3cd1757b108d7b6856c92ae661d6c323",
              "versionType": "git"
            },
            {
              "status": "affected",
              "version": "e49abde0ffc382a967b24f326d1614ac3bb06a94",
              "lessThan": "5cf3972c8221abdb1b464a14ccf8103d840b9085",
              "versionType": "git"
            },
            {
              "status": "affected",
              "version": "fe4039034dcdf584afbf763787909e28e92a4927",
              "lessThan": "5a5f23ef5431639db1ac3a0b274aef3a84cc413c",
              "versionType": "git"
            },
            {
              "status": "affected",
              "version": "bc804a8d7e865ef47fb7edcaf5e77d18bf444ebc",
              "lessThan": "eade54040384f54b7fb330e4b0975c5734850b3c",
              "versionType": "git"
            }
          ],
          "programFiles": [
            "fs/erofs/fileio.c"
          ],
          "defaultStatus": "unaffected"
        },
        {
          "repo": "https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git",
          "vendor": "Linux",
          "product": "Linux",
          "versions": [
            {
              "status": "affected",
              "version": "6.12.75",
              "lessThan": "6.12.80",
              "versionType": "semver"
            },
            {
              "status": "affected",
              "version": "6.18.14",
              "lessThan": "6.18.21",
              "versionType": "semver"
            },
            {
              "status": "affected",
              "version": "6.19.4",
              "lessThan": "6.19.11",
              "versionType": "semver"
            }
          ],
          "programFiles": [
            "fs/erofs/fileio.c"
          ],
          "defaultStatus": "unaffected"
        }
      ]
    }
  ],
  "published": "2026-04-22T14:16:50.810",
  "references": [
    {
      "url": "https://git.kernel.org/stable/c/5a5f23ef5431639db1ac3a0b274aef3a84cc413c",
      "tags": [
        "Patch"
      ],
      "source": "416baaa9-dc9f-4396-8d5f-8c081fb06d67"
    },
    {
      "url": "https://git.kernel.org/stable/c/5cf3972c8221abdb1b464a14ccf8103d840b9085",
      "tags": [
        "Patch"
      ],
      "source": "416baaa9-dc9f-4396-8d5f-8c081fb06d67"
    },
    {
      "url": "https://git.kernel.org/stable/c/d1ba7d6b3cd1757b108d7b6856c92ae661d6c323",
      "tags": [
        "Patch"
      ],
      "source": "416baaa9-dc9f-4396-8d5f-8c081fb06d67"
    },
    {
      "url": "https://git.kernel.org/stable/c/eade54040384f54b7fb330e4b0975c5734850b3c",
      "tags": [
        "Patch"
      ],
      "source": "416baaa9-dc9f-4396-8d5f-8c081fb06d67"
    }
  ],
  "vulnStatus": "Analyzed",
  "weaknesses": [
    {
      "type": "Primary",
      "source": "nvd@nist.gov",
      "description": [
        {
          "lang": "en",
          "value": "NVD-CWE-noinfo"
        }
      ]
    }
  ],
  "descriptions": [
    {
      "lang": "en",
      "value": "In the Linux kernel, the following vulnerability has been resolved:\n\nerofs: set fileio bio failed in short read case\n\nFor file-backed mount, IO requests are handled by vfs_iocb_iter_read().\nHowever, it can be interrupted by SIGKILL, returning the number of\nbytes actually copied. Unused folios in bio are unexpectedly marked\nas uptodate.\n\n  vfs_read\n    filemap_read\n      filemap_get_pages\n        filemap_readahead\n          erofs_fileio_readahead\n            erofs_fileio_rq_submit\n              vfs_iocb_iter_read\n                filemap_read\n                  filemap_get_pages  <= detect signal\n              erofs_fileio_ki_complete  <= set all folios uptodate\n\nThis patch addresses this by setting short read bio with an error\ndirectly."
    }
  ],
  "lastModified": "2026-06-17T10:33:53.543",
  "configurations": [
    {
      "nodes": [
        {
          "negate": false,
          "cpeMatch": [
            {
              "criteria": "cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*",
              "vulnerable": true,
              "matchCriteriaId": "E823EB64-1F92-40BB-891C-D94D00EDA086",
              "versionEndExcluding": "6.12.80",
              "versionStartIncluding": "6.12.75"
            },
            {
              "criteria": "cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*",
              "vulnerable": true,
              "matchCriteriaId": "DEA57E4E-36B0-40D5-98B9-6A50348C9E74",
              "versionEndExcluding": "6.18.21",
              "versionStartIncluding": "6.18.14"
            },
            {
              "criteria": "cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*",
              "vulnerable": true,
              "matchCriteriaId": "A67B0458-DAE3-4940-BBB2-1A4D263AF27B",
              "versionEndExcluding": "6.19.11",
              "versionStartIncluding": "6.19.4"
            }
          ],
          "operator": "OR"
        }
      ]
    }
  ],
  "sourceIdentifier": "416baaa9-dc9f-4396-8d5f-8c081fb06d67"
}