CVE-2026-80529 PUBLISHED

xfs: don't swallow dquot recovery verification errors

Assigner: Linux
Reserved: 26.08.2026 Published: 26.08.2026 Updated: 26.08.2026

In the Linux kernel, the following vulnerability has been resolved:

xfs: don't swallow dquot recovery verification errors

xlog_recover_dquot_commit_pass2() validates the recovered dquot with xfs_dqblk_verify() and, on failure, sets error = -EFSCORRUPTED and jumps to out_release. But out_release unconditionally returns 0, so the corruption error is discarded: the caller xlog_recover_items_pass2() sees success, log recovery proceeds as if the dquot were valid, and the corrupt quota buffer can be written back to disk.

Product Status

Vendor Linux
Product Linux
Versions Default: unaffected
  • affected from 7880b1f0adef4d363f42d6bb42aab3211291351b to e506e127fcb4e2bad1045805f1740b395eea9618 (excl.)
  • affected from 3581868f51a2edb027a898988b5b5a4ba379ee55 to 5b756fbb60b5d26063f46a11a3c7daa7eb616d79 (excl.)
  • affected from 9c235dfc3d3f901fe22acb20f2ab37ff39f2ce02 to a233b3362a3c7bf23f5143b4ef4b17ec337fcb4d (excl.)
  • affected from 9c235dfc3d3f901fe22acb20f2ab37ff39f2ce02 to 38a4dbe588bd028a07a77dc5cee62ee3ce21e87d (excl.)
  • affected from 9c235dfc3d3f901fe22acb20f2ab37ff39f2ce02 to 36a31b12540c0a0a3b77a01fda86de646f2961fb (excl.)
  • affected from 9c235dfc3d3f901fe22acb20f2ab37ff39f2ce02 to e2b4a856085e9bd939bde2dee0d08b1d41babde9 (excl.)
  • affected from 6.1.128 to 6.1.184 (excl.)
  • affected from 6.6.17 to 6.6.153 (excl.)
Vendor Linux
Product Linux
Versions Default: affected
  • Version 6.7 is affected
  • unaffected from 0 to 6.7 (excl.)
  • unaffected from 6.1.184 to 6.1.* (incl.)
  • unaffected from 6.6.153 to 6.6.* (incl.)
  • unaffected from 6.12.105 to 6.12.* (incl.)
  • unaffected from 6.18.46 to 6.18.* (incl.)
  • unaffected from 7.1.10 to 7.1.* (incl.)
  • unaffected from 7.2 to * (incl.)

References