Description
In the Linux kernel, the following vulnerability has been resolved:

md/md-llbitmap: raise barrier before state machine transition

Move the barrier raise operation before calling llbitmap_state_machine()
in both llbitmap_start_write() and llbitmap_start_discard(). This
ensures the barrier is in place before any state transitions occur,
preventing potential race conditions where the state machine could
complete before the barrier is properly raised.
Published: 2026-05-27
Score: 5.5 Medium
EPSS: n/a
KEV: No
Impact: n/a
Action: n/a
AI Analysis

Impact

The vulnerability resides in the Linux kernel’s llbitmap subsystem. A race condition exists where a barrier is raised only after calling the llbitmap_state_machine() function in both llbitmap_start_write() and llbitmap_start_discard(). If the state machine completes before the barrier is properly raised, concurrent modifications could occur, potentially corrupting llbitmap state or causing unintended behavior. Such a flaw could allow a local attacker to corrupt kernel data or trigger a denial‑of‑service scenario by taking advantage of the race between barrier enforcement and state transitions.

Affected Systems

The affected vendor is Linux, specifically the Linux kernel. No specific version range is supplied in the CNA data, implying that recent kernels containing the commit that raises the barrier earlier are not vulnerable. Administrators should verify whether their kernel includes the patch corresponding to commit 9142f00a9287ca38152717e3e88a033a27774e7f or later stable releases.

Risk and Exploitability

The CVSS score is 5.5, EPSS not available, and the vulnerability is not listed in the CISA KEV catalog, so the quantitative risk assessment is limited. Nonetheless, as the flaw is inherent to kernel state management, it is a high‑potential risk for systems that can be targeted locally. An attacker with local or privileged access could trigger the race to corrupt mmapped data or force a kernel panic, resulting in partial or complete denial of service. The lack of external exploitation references suggests no publicly known exploit, but the underlying race condition remains a serious concern for kernel stability.

Generated by OpenCVE AI on May 28, 2026 at 02:43 UTC.

Remediation

No vendor fix or workaround currently provided.

OpenCVE Recommended Actions

  • Upgrade to a Linux kernel version that includes the commit 9142f00a9287ca38152717e3e88a033a27774e7f, which raises the barrier prior to llbitmap state transitions.
  • If an immediate kernel upgrade is not feasible, cherry‑select the commit from the Linux kernel git repository and apply the patch directly to the affected llbitmap subsystem.
  • Check for vendor‑issued security advisories or newer kernel releases that contain the fix, and apply updates promptly.

Generated by OpenCVE AI on May 28, 2026 at 02:43 UTC.

Tracking

Sign in to view the affected projects.

Advisories

No advisories yet.

History

Thu, 28 May 2026 00:15:00 +0000

Type Values Removed Values Added
Weaknesses CWE-821
References
Metrics threat_severity

None

cvssV3_1

{'score': 5.5, 'vector': 'CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H'}

threat_severity

Moderate


Wed, 27 May 2026 20:30:00 +0000

Type Values Removed Values Added
Weaknesses CWE-409
CWE-767

Wed, 27 May 2026 14:15:00 +0000

Type Values Removed Values Added
Description In the Linux kernel, the following vulnerability has been resolved: md/md-llbitmap: raise barrier before state machine transition Move the barrier raise operation before calling llbitmap_state_machine() in both llbitmap_start_write() and llbitmap_start_discard(). This ensures the barrier is in place before any state transitions occur, preventing potential race conditions where the state machine could complete before the barrier is properly raised.
Title md/md-llbitmap: raise barrier before state machine transition
First Time appeared Linux
Linux linux Kernel
CPEs cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*
Vendors & Products Linux
Linux linux Kernel
References

Subscriptions

Linux Linux Kernel
cve-icon MITRE

Status: PUBLISHED

Assigner: Linux

Published:

Updated: 2026-05-27T12:58:48.179Z

Reserved: 2026-05-13T15:03:33.097Z

Link: CVE-2026-46095

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Awaiting Analysis

Published: 2026-05-27T14:17:31.113

Modified: 2026-05-27T14:48:03.013

Link: CVE-2026-46095

cve-icon Redhat

Severity : Moderate

Publid Date: 2026-05-27T00:00:00Z

Links: CVE-2026-46095 - Bugzilla

cve-icon OpenCVE Enrichment

Updated: 2026-05-28T02:45:05Z

Weaknesses