CVE-2026-98267 PUBLISHED

9p: Fix v9fs_issue_write() to update i_size and remote_i_size

Assigner: Linux
Reserved: 25.09.2026 Published: 06.10.2026 Updated: 06.10.2026

In the Linux kernel, the following vulnerability has been resolved:

9p: Fix v9fs_issue_write() to update i_size and remote_i_size

Fix v9fs_issue_write() to update i_size and remote_i_size to the new size of the server file if we made it larger, using the start fpos and the count returned by p9_client_write() to calculate the new minimum file size.

This assumes that if the 9P server makes a short write (say it hits ENOSPC), a reduced count is returned.

Product Status

Vendor Linux
Product Linux
Versions Default: unaffected
  • affected from 5fb70e7275a61dd404f684370e1add7fe0ebe9c5 to aeb1fe55583836744aef11fbfa2a09122aa9816c (excl.)
  • affected from 5fb70e7275a61dd404f684370e1add7fe0ebe9c5 to 88871ab548c1d7b11cde9b04063f3c1c6fbd7039 (excl.)
  • affected from 5fb70e7275a61dd404f684370e1add7fe0ebe9c5 to 9cd92e3392bdd14568e9e44aec1ac05e1fcd62e5 (excl.)
  • affected from 5fb70e7275a61dd404f684370e1add7fe0ebe9c5 to c60ae98c5aa64021751b38ab1313b19d620bf640 (excl.)
Vendor Linux
Product Linux
Versions Default: affected
  • Version 6.10 is affected
  • unaffected from 0 to 6.10 (excl.)
  • unaffected from 6.12.112 to 6.12.* (incl.)
  • unaffected from 6.18.54 to 6.18.* (incl.)
  • unaffected from 7.2.8 to 7.2.* (incl.)
  • unaffected from 7.3-rc4 to * (incl.)

References