Instituto Nacional de ciberseguridad. Sección Incibe
Instituto Nacional de Ciberseguridad. Sección INCIBE-CERT

CVE-2026-53063

Gravedad CVSS v3.1:
MEDIA
Tipo:
No Disponible / Otro tipo
Fecha de publicación:
24/06/2026
Última modificación:
21/07/2026

Descripción

*** Pendiente de traducción *** In the Linux kernel, the following vulnerability has been resolved:<br /> <br /> dm cache: fix write hang in passthrough mode<br /> <br /> The invalidate_remove() function has incomplete logic for handling write<br /> hit bios after cache invalidation. It sets up the remapping for the<br /> overwrite_bio but then drops it immediately without submission, causing<br /> write operations to hang.<br /> <br /> Fix by adding a new invalidate_committed() continuation that submits<br /> the remapped writes to the cache origin after metadata commit completes,<br /> while using the overwrite_endio hook to ensure proper completion<br /> sequencing. This maintains existing coherency. Also improve error<br /> handling in invalidate_complete() to preserve the original error status<br /> instead of using bio_io_error() unconditionally.

Productos y versiones vulnerables

CPE Desde Hasta
cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:* 4.12 (incluyendo) 6.1.175 (excluyendo)
cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:* 6.2 (incluyendo) 6.6.141 (excluyendo)
cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:* 6.7 (incluyendo) 6.12.91 (excluyendo)
cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:* 6.13 (incluyendo) 6.18.33 (excluyendo)
cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:* 6.19 (incluyendo) 7.0.10 (excluyendo)