VDB

CVE-2026-23225

CVE-2026-23225 PUBLISHED

In the Linux kernel, the following vulnerability has been resolved: hfs: ensure sb->s_fs_info is always cleaned up When hfs was converted to the new mount api a bug was introduced by changing the allocation pattern of sb->s_fs_info. If setup_bdev_super() fails after a new superblock has been allocated by sget_fc(), but before hfs_fill_super() takes ownership of the filesystem-specific s_fs_info data it was leaked. Fix this by freeing sb->s_fs_info in hfs_kill_super().

EPSS 0.02% · 5.6th percentile

Risk Scores

EPSS Score
0.02%
5.6th percentile

Affected Products

VendorProductVersions
linuxlinux_kernel6.13, 6.13, 6.13
LinuxLinuxffcd06b6d13b72823aba0d7c871f7e4876e7916b, ffcd06b6d13b72823aba0d7c871f7e4876e7916b, 0

Timeline

  • Feb 18, 2026 CVE Published
  • Feb 19, 2026 EPSS Score
  • Feb 21, 2026 EPSS Score
  • Feb 22, 2026 EPSS Score
  • Feb 24, 2026 EPSS Score
  • Feb 26, 2026 EPSS Score
  • Feb 26, 2026 PoC Published
  • Feb 27, 2026 EPSS Score
  • Mar 1, 2026 EPSS Score
  • Mar 3, 2026 EPSS Score
  • Mar 5, 2026 EPSS Score
  • Mar 6, 2026 EPSS Score
Open in Interactive Console →
$ Console Community · 100/wk Open console ›