Description
In the Linux kernel, the following vulnerability has been resolved:

md: remove REQ_NOWAIT support from raid1/10/456

REQ_NOWAIT support in md personalities that can block internally is
fundamentally incomplete. While reads can avoid some blocking paths,
write requests can still encounter cases where one mirror succeeds while
another returns -EAGAIN. At that point md cannot distinguish queue
pressure from a real device failure, so it can neither record a bad
block nor safely retry the write without REQ_NOWAIT, leaving mirrors
with divergent data.

Rather than continue advertising REQ_NOWAIT support for personalities
that cannot implement it correctly, remove it from raid1, raid10 and
raid456. Keep REQ_NOWAIT for linear and raid0, which only remap bios to
their underlying devices; stacked limits will still clear the feature if
any component device lacks REQ_NOWAIT support.
Published: 2026-09-17
Score: 7.1 High
EPSS: < 1% Very Low
KEV: No
Impact: Data Integrity Compromise
Action: Update Kernel
AI Analysis

Impact

The Linux kernel’s RAID implementations for raid1, raid10, and raid456 incorrectly handle write error scenarios when the REQ_NOWAIT flag is used. During a write, if one mirror succeeds and another returns -EAGAIN, the kernel cannot distinguish between temporary queue pressure and a genuine device failure. As a result, it neither records a bad block nor retries the write safely without REQ_NOWAIT, causing mirrors to drift apart and producing divergent data on the same logical volume. This flaw does not enable remote code execution but can lead to corruption of mirrored data, compromising the integrity of stored information.

Affected Systems

The affected product is the Linux kernel in all distributions that include a kernel version in which raid1, raid10, and raid456 personalities advertise REQ_NOWAIT support. Kernel releases prior to the implementation change that removed this support remain vulnerable. The vulnerability is not limited to a specific vendor or distribution, as the kernel code is shared across all Linux‑using systems.

Risk and Exploitability

The CVSS score of 7.1 classifies this issue as high‑medium severity. The EPSS score of less than 1% indicates a very low likelihood of exploitation in the wild. The vulnerability is not listed in the CISA KEV catalog. Exploitation requires initiating kernel‑level write operations to a RAID volume that still advertises REQ_NOWAIT support, implying local or elevated privileges. No public exploit code is known. The primary risk remains the potential for data corruption on affected systems if the flaw is exercised while the kernel advertises REQ_NOWAIT support.

Generated by OpenCVE AI on September 20, 2026 at 00:43 UTC.

Remediation

No solution or workaround provided in the CVE record.

OpenCVE Recommended Actions

  • Upgrade the Linux kernel to a version where REQ_NOWAIT support has been removed from raid1, raid10, and raid456 personalities.
  • Reboot the system after installing the updated kernel so the updated RAID module loads.
  • Verify mirrored data integrity by checking RAID status or running file system consistency checks on affected volumes.

Generated by OpenCVE AI on September 20, 2026 at 00:43 UTC.

Tracking

Sign in to view the affected projects.

Advisories

No advisories yet.

History

Sun, 20 Sep 2026 01:00:00 +0000

Type Values Removed Values Added
Weaknesses CWE-362
CWE-665

Sat, 19 Sep 2026 23:45:00 +0000

Type Values Removed Values Added
Weaknesses CWE-390

Sat, 19 Sep 2026 13:45:00 +0000

Type Values Removed Values Added
Weaknesses CWE-390

Fri, 18 Sep 2026 21:30:00 +0000

Type Values Removed Values Added
Metrics cvssV3_1

{'score': 7.1, 'vector': 'CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:H/A:H'}


Thu, 17 Sep 2026 16:30:00 +0000

Type Values Removed Values Added
Description In the Linux kernel, the following vulnerability has been resolved: md: remove REQ_NOWAIT support from raid1/10/456 REQ_NOWAIT support in md personalities that can block internally is fundamentally incomplete. While reads can avoid some blocking paths, write requests can still encounter cases where one mirror succeeds while another returns -EAGAIN. At that point md cannot distinguish queue pressure from a real device failure, so it can neither record a bad block nor safely retry the write without REQ_NOWAIT, leaving mirrors with divergent data. Rather than continue advertising REQ_NOWAIT support for personalities that cannot implement it correctly, remove it from raid1, raid10 and raid456. Keep REQ_NOWAIT for linear and raid0, which only remap bios to their underlying devices; stacked limits will still clear the feature if any component device lacks REQ_NOWAIT support.
Title md: remove REQ_NOWAIT support from raid1/10/456
First Time appeared Linux
Linux linux Kernel
CPEs cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*
Vendors & Products Linux
Linux linux Kernel
References

Subscriptions

Linux Linux Kernel
cve-icon MITRE

Status: PUBLISHED

Assigner: Linux

Published:

Updated: 2026-09-18T17:55:08.085Z

Reserved: 2026-09-11T19:38:34.811Z

Link: CVE-2026-90401

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Received

Published: 2026-09-17T17:17:39.877

Modified: 2026-09-18T18:17:57.360

Link: CVE-2026-90401

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

Updated: 2026-09-20T00:45:16Z

Weaknesses
  • CWE-362

    Concurrent Execution using Shared Resource with Improper Synchronization ('Race Condition')

  • CWE-665

    Improper Initialization