In the Linux kernel, the following vulnerability has been resolved:
nilfs2: avoid having an active sc_timer before freeing sci
Because kthread_stop did not stop sc_task properly and returned -EINTR, the sc_timer was not properly closed, ultimately causing the problem [1] reported by syzbot when freeing sci due to the sc_timer not being closed.
Because the thread sc_task main function nilfs_segctor_thread() returns 0 when it succeeds, when the return value of kthread_stop() is not 0 in nilfs_segctor_destroy(), we believe that it has not properly closed sc_timer.
We use timer_shutdown_sync() to sync wait for sc_timer to shutdown, and set the value of sc_task to NULL under the protection of lock sc_state_lock, so as to avoid the issue caused by sc_timer not being properly shutdowned.
[1] ODEBUG: free active (active state 0) object: 00000000dacb411a object type: timer_list hint: nilfs_construction_timeout Call trace: nilfs_segctor_destroy fs/nilfs2/segment.c:2811 [inline] nilfs_detach_log_writer+0x668/0x8cc fs/nilfs2/segment.c:2877 nilfs_put_super+0x4c/0x12c fs/nilfs2/super.c:509
Covered by Rapid7
| Product | Vendor Advisory | Solution File | Added | Published |
|---|---|---|---|---|
| Debian | — | Upgrade linux | Jul 23, 2026 | Jul 23, 2026 |
| Ubuntu | — | Upgrade linux-image-6.17.0-1011-oemUpgrade linux-image-azure-6.17Upgrade linux-image-6.17.0-1008-azureUpgrade linux-image-azureUpgrade linux-image-generic-64k-6.17Upgrade linux-image-6.17.0-14-generic-64kUpgrade linux-image-6.17.0-1006-realtimeUpgrade linux-image-generic-64kUpgrade linux-image-raspi-6.17Upgrade linux-image-generic-6.17Upgrade linux-image-raspiUpgrade linux-image-gcpUpgrade linux-image-6.17.0-1007-gcpUpgrade linux-image-6.17.0-1007-aws-64kUpgrade linux-image-virtual-6.17Upgrade linux-image-6.17.0-1007-oracle-64kUpgrade linux-image-aws-64k-6.17Upgrade linux-image-oracle-64kUpgrade linux-image-oracle-64k-6.17Upgrade linux-image-realtime-6.17Upgrade linux-image-genericUpgrade linux-image-6.17.0-1007-awsUpgrade linux-image-6.17.0-1007-oracleUpgrade linux-image-virtualUpgrade linux-image-gcp-64k-6.17Upgrade linux-image-gcp-6.17Upgrade linux-image-aws-64kUpgrade linux-image-6.17.0-1007-gcp-64kUpgrade linux-image-realtimeUpgrade linux-image-6.17.0-1008-raspiUpgrade linux-image-6.17.0-14-genericUpgrade linux-image-aws-6.17Upgrade linux-image-awsUpgrade linux-image-oem-6.17Upgrade linux-image-gcp-64kUpgrade linux-image-oracleUpgrade linux-image-oracle-6.17 | Feb 13, 2026 | Feb 12, 2026 |
Prioritise with Active Threat Intelligence
With curated Threat Intelligence, you can see which vulnerabilities truly put you at risk, prioritize what matters most, and act before attackers do.
Explore Intelligence Hub