CVE-2026-31451

MEDIUM

ext4: replace BUG_ON with proper error handling in ext4_read_inline_folio

Title source: cna
STIX 2.1

Description

In the Linux kernel, the following vulnerability has been resolved: ext4: replace BUG_ON with proper error handling in ext4_read_inline_folio Replace BUG_ON() with proper error handling when inline data size exceeds PAGE_SIZE. This prevents kernel panic and allows the system to continue running while properly reporting the filesystem corruption. The error is logged via ext4_error_inode(), the buffer head is released to prevent memory leak, and -EFSCORRUPTED is returned to indicate filesystem corruption.

Scores

CVSS v3 5.5
EPSS 0.0001
EPSS Percentile 3.4%
Attack Vector LOCAL
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H

Details

CWE
CWE-617
Status published
Products (19)
Linux/Linux < 3.8
Linux/Linux 1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 - 356227096eb66e41b23caf7045e6304877322edf
Linux/Linux 1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 - 65c6c30ce6362c1c684568744ea510c921a756cd
Linux/Linux 1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 - 823849a26af089ffc5dfdd2ae4b9d446b46a0cda
Linux/Linux 1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 - a7d600e04732a7d29b107c91fe3aec64cf6ce7f2
Linux/Linux 1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 - d4b3f370c3d8f7ce565d4a718572c9f7c12f77ed
Linux/Linux 3.8
Linux/Linux 46c7f254543dedcf134ad05091ed2b935a9a597d - 356227096eb66e41b23caf7045e6304877322edf
Linux/Linux 46c7f254543dedcf134ad05091ed2b935a9a597d - 65c6c30ce6362c1c684568744ea510c921a756cd
Linux/Linux 46c7f254543dedcf134ad05091ed2b935a9a597d - 823849a26af089ffc5dfdd2ae4b9d446b46a0cda
... and 9 more
Published Apr 22, 2026
Tracked Since Apr 22, 2026