CVE-2026-23214

CWE-9118 documents8 sources
Severity
5.5MEDIUM
EPSS
0.0%
top 96.97%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedFeb 18

Description

In the Linux kernel, the following vulnerability has been resolved: btrfs: reject new transactions if the fs is fully read-only [BUG] There is a bug report where a heavily fuzzed fs is mounted with all rescue mount options, which leads to the following warnings during unmount: BTRFS: Transaction aborted (error -22) Modules linked in: CPU: 0 UID: 0 PID: 9758 Comm: repro.out Not tainted 6.19.0-rc5-00002-gb71e635feefc #7 PREEMPT(full) Hardware name: QEMU Standard PC (i440FX + PIIX, 1996), BIOS 1

CVSS vector

CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:HExploitability: 1.8 | Impact: 3.6

Affected Packages3 packages

NVDlinux/linux_kernel5.116.12.70+2
CVEListV5linux/linux42437a6386ffeaaf200731e73d723ea491f3fe7da928eecf030a9a5dc5f5ca98332699f379b91963+3
Debianlinux< 6.12.73-1+1

Patches

🔴Vulnerability Details

3
GHSA
GHSA-vqcj-rgfw-jjcq: In the Linux kernel, the following vulnerability has been resolved: btrfs: reject new transactions if the fs is fully read-only [BUG] There is a bug2026-02-18
CVEList
btrfs: reject new transactions if the fs is fully read-only2026-02-18
OSV
CVE-2026-23214: In the Linux kernel, the following vulnerability has been resolved: btrfs: reject new transactions if the fs is fully read-only [BUG] There is a bug r2026-02-18

📋Vendor Advisories

3
Red Hat
kernel: btrfs: reject new transactions if the fs is fully read-only2026-02-18
Microsoft
btrfs: reject new transactions if the fs is fully read-only2026-02-10
Debian
CVE-2026-23214: linux - In the Linux kernel, the following vulnerability has been resolved: btrfs: reje...2026

🕵️Threat Intelligence

1
Wiz
CVE-2026-23214 Impact, Exploitability, and Mitigation Steps | Wiz
CVE-2026-23214 (MEDIUM CVSS 5.5) | In the Linux kernel | cvebase.io