Description
In the Linux kernel, the following vulnerability has been resolved:

eventfs: Initialize ei->children and ei->list in init_ei()

eventfs_create_dir() allocates the eventfs_inode and initializes it with
init_ei(). But this does not initialize the eventfs_inode list_heads. If
the eventfs_create_dir() fails due to memory pressure, it will call
free_ei() before it initialized the lists, and that checks to make sure
the eventfs_inode has no children. But because the list wasn't
initialized, it will give a false warning.

Fix it by moving the list initialization into init_ei().

[ Rewrote change log ]
Published: 2026-09-11
Score: 0.0 Low
EPSS: < 1% Very Low
KEV: No
Impact: No security impact
Action: Apply Patch
AI Analysis

Impact

The Linux kernel eventfs subsystem contains a flaw where the list heads of an eventfs_inode are not initialized in init_ei(). When eventfs_create_dir() fails during allocation due to memory pressure, the failure path calls free_ei() before initialization; this triggers checks that incorrectly report the inode as having children, producing a false warning message. The flaw does not allow data disclosure, code execution, or escalation of privileges, and is classified as CWE-824.

Affected Systems

All Linux kernel implementations that include the upstream code prior to the inclusion of commit 1704aaaf5d22 are affected, which encompasses the default kernels shipped by major distributions and custom builds that have not been updated. The fix was introduced in the referenced commit, so any kernel compiled from that point forward contains the initialized list heads.

Risk and Exploitability

The EPSS score is below 1%, indicating a very low probability of exploitation, and the vulnerability is not listed in CISA’s KEV catalog. Attackers cannot leverage the logged false warning to affect confidentiality, integrity, or availability; the impact is limited to misleading diagnostic information and potential operational confusion. Consequently, the overall risk remains low.

Generated by OpenCVE AI on September 21, 2026 at 01:21 UTC.

Remediation

No solution or workaround provided in the CVE record.

OpenCVE Recommended Actions

  • Update the Linux kernel to a release that includes commit 1704aaaf5d22 or newer, ensuring the eventfs_inode list heads are initialized.
  • If the eventfs subsystem is not needed, disable it by setting CONFIG_EVENTFS to n in the kernel configuration or by blacklisting the eventfs module, then rebuild or reload the kernel.
  • For custom kernel builds, apply the patch that initializes the ei->children and ei->list in init_ei() by integrating commit 1704aaaf5d22 or newer directly into your source.

Generated by OpenCVE AI on September 21, 2026 at 01:21 UTC.

Tracking

Sign in to view the affected projects.

Advisories
Source ID Title
Debian DSA Debian DSA DSA-6528-1 linux security update
History

Mon, 14 Sep 2026 12:30:00 +0000


Sat, 12 Sep 2026 00:15:00 +0000

Type Values Removed Values Added
Weaknesses CWE-824
References
Metrics threat_severity

None

cvssV3_1

{'score': 0.0, 'vector': 'CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:N'}

threat_severity

Low


Fri, 11 Sep 2026 23:45:00 +0000

Type Values Removed Values Added
Description In the Linux kernel, the following vulnerability has been resolved: eventfs: Initialize ei->children and ei->list in init_ei() eventfs_create_dir() allocates the eventfs_inode and initializes it with init_ei(). But this does not initialize the eventfs_inode list_heads. If the eventfs_create_dir() fails due to memory pressure, it will call free_ei() before it initialized the lists, and that checks to make sure the eventfs_inode has no children. But because the list wasn't initialized, it will give a false warning. Fix it by moving the list initialization into init_ei(). [ Rewrote change log ]
Title eventfs: Initialize ei->children and ei->list in init_ei()
First Time appeared Linux
Linux linux Kernel
CPEs cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*
Vendors & Products Linux
Linux linux Kernel
References

Subscriptions

Linux Linux Kernel
cve-icon MITRE

Status: PUBLISHED

Assigner: Linux

Published:

Updated: 2026-09-14T12:01:34.226Z

Reserved: 2026-09-11T19:38:34.736Z

Link: CVE-2026-89618

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Received

Published: 2026-09-11T20:19:47.040

Modified: 2026-09-14T13:19:15.857

Link: CVE-2026-89618

cve-icon Redhat

Severity : Low

Publid Date: 2026-09-11T19:45:17Z

Links: CVE-2026-89618 - Bugzilla

cve-icon OpenCVE Enrichment

Updated: 2026-09-21T01:30:08Z

Weaknesses
  • CWE-824

    Access of Uninitialized Pointer