Description
In the Linux kernel, the following vulnerability has been resolved:

dm-pcache: detect a cycle in the last-kset chain during replay

cache_replay() follows the on-media last-kset chain by next_cache_seg_id
with no cond_resched(). A forged chain that points back into a segment it
has already visited makes the replay loop follow it forever.

Cap the last-kset hops at cache->n_segs; a valid chain visits each segment
at most once.
Published: 2026-09-11
Score: 4.4 Medium
EPSS: < 1% Very Low
KEV: No
Impact: Denial of Service
Action: Patch
AI Analysis

Impact

The Linux kernel’s dm‑pcache module contains a flaw where cache_replay() follows a chain of on‑media segments without yielding the scheduler. An attacker can create a forged chain that loops back to a segment that has already been visited, causing cache_replay() to iterate indefinitely. This results in an infinite loop that consumes CPU cycles and can make the kernel unresponsive, constituting a denial‑of‑service condition. The weakness is an infinite‑loop flaw (CWE‑835). The description does not indicate any escalation of privileges or remote code execution capability.

Affected Systems

All implementations of the Linux kernel that include the unpatched dm‑pcache code may be affected. The CNA lists Linux:Linux as the affected vendor/product. Precise kernel versions are not specified in the CVE data, so any release containing the vulnerable dm‑pcache path should be considered potentially impacted until the patch is applied.

Risk and Exploitability

The CVSS score is 4.4, indicating moderate severity. The EPSS score is less than 1% and the vulnerability is not listed in the CISA KEV catalog, implying low likelihood of active exploitation. Attackers would need local access to the on‑media segment data to forge a damaging chain; remote exploitation is not supported by the available information.

Generated by OpenCVE AI on September 21, 2026 at 03:13 UTC.

Remediation

No solution or workaround provided in the CVE record.

OpenCVE Recommended Actions

  • Apply a kernel update that includes the dm‑pcache loop‑detection patch.
  • If an update is unavailable, consider disabling or removing the dm‑pcache module to eliminate the vulnerable replay operation.
  • Monitor system CPU usage and kernel logs for signs of prolonged cache replay activity and schedule an update when possible.

Generated by OpenCVE AI on September 21, 2026 at 03:13 UTC.

Tracking

Sign in to view the affected projects.

Advisories

No advisories yet.

History

Sat, 12 Sep 2026 00:15:00 +0000

Type Values Removed Values Added
Weaknesses CWE-835
References
Metrics threat_severity

None

cvssV3_1

{'score': 4.4, 'vector': 'CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:U/C:N/I:N/A:H'}

threat_severity

Moderate


Fri, 11 Sep 2026 23:45:00 +0000

Type Values Removed Values Added
Description In the Linux kernel, the following vulnerability has been resolved: dm-pcache: detect a cycle in the last-kset chain during replay cache_replay() follows the on-media last-kset chain by next_cache_seg_id with no cond_resched(). A forged chain that points back into a segment it has already visited makes the replay loop follow it forever. Cap the last-kset hops at cache->n_segs; a valid chain visits each segment at most once.
Title dm-pcache: detect a cycle in the last-kset chain during replay
First Time appeared Linux
Linux linux Kernel
CPEs cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*
Vendors & Products Linux
Linux linux Kernel
References

Subscriptions

Linux Linux Kernel
cve-icon MITRE

Status: PUBLISHED

Assigner: Linux

Published:

Updated: 2026-09-11T19:42:25.194Z

Reserved: 2026-08-26T14:34:25.804Z

Link: CVE-2026-80957

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Received

Published: 2026-09-11T20:19:01.520

Modified: 2026-09-11T20:19:01.520

Link: CVE-2026-80957

cve-icon Redhat

Severity : Moderate

Publid Date: 2026-09-11T19:42:25Z

Links: CVE-2026-80957 - Bugzilla

cve-icon OpenCVE Enrichment

Updated: 2026-09-21T03:15:09Z

Weaknesses
  • CWE-835

    Loop with Unreachable Exit Condition ('Infinite Loop')