CVE-2026-45960 Details
Description
In the Linux kernel, the following vulnerability has been resolved: hfsplus: return error when node already exists in hfs_bnode_create When hfs_bnode_create() finds that a node is already hashed (which should not happen in normal operation), it currently returns the existing node without incrementing its reference count. This causes a reference count inconsistency that leads to a kernel panic when the node is later freed in hfs_bnode_put(): kernel BUG at fs/hfsplus/bnode.c:676! BUG_ON(!atomic_read(&node->refcnt)) This scenario can occur when hfs_bmap_alloc() attempts to allocate a node that is already in use (e.g., when node 0's bitmap bit is incorrectly unset), or due to filesystem corruption. Returning an existing node from a create path is not normal operation. Fix this by returning ERR_PTR(-EEXIST) instead of the node when it's already hashed. This properly signals the error condition to callers, which already check for IS_ERR() return values.
A vulnerability in the Linux kernel's HFS+ file system implementation can cause a kernel panic. The issue arises in the 'hfs_bnode_create' function, where the code improperly handles nodes that are already hashed. Instead of incrementing the reference count of the existing node, it returns the node as is, creating a reference count inconsistency. This flaw can lead to a kernel panic when the node is eventually freed, as the reference count does not accurately reflect its usage. This problem can occur due to filesystem corruption or when the bitmap management of node allocations is flawed.
Users can upgrade to the latest stable version of the Linux kernel, where this vulnerability has been addressed. Instructions for upgrading the kernel can be found in the official Linux documentation.
Metrics
CVSS 4.0 Severity and Vector Strings:
No CVSS 4.0 data is available for this CVE.
CVSS 3.x Severity and Vector Strings:
No data available for CVSS Version 2.0 on this CVE.
No SSVC data is available for this CVE.
References to Advisories, Solutions, and Tools
By selecting these links, you will be leaving this site. These are references gathered from the official CVE record and are not endorsed by Volerion.
| URL | Source(s) | Tag(s) |
|---|---|---|
| https://git.kernel.org/stable/c/1ca428769cb4737a25bd32fb4d1573cc09eeaeef | kernel.org | Patch |
| https://git.kernel.org/stable/c/2e6ff6a6fc69cc17ed10c9cb6242935d52acd52d | kernel.org | Patch |
| https://git.kernel.org/stable/c/2e9185a42e0e237c74435fd092b7c34537c62156 | kernel.org | Patch |
| https://git.kernel.org/stable/c/507a1de58c21c95ad7c44afccaf1222d1c42246b | kernel.org | Patch |
| https://git.kernel.org/stable/c/51838112d9c22502333c3085ca0c0d691e7093c6 | kernel.org | Patch |
| https://git.kernel.org/stable/c/7b57ada854b32310f224abd61bcfec2d5790ff0a | kernel.org | Patch |
| https://git.kernel.org/stable/c/986455135b95f32c1f142068e451098fc751749e | kernel.org | Patch |
| https://git.kernel.org/stable/c/d8a73cc46c8462a969a7516131feb3096f4c49d3 | kernel.org | Patch |
Weakness Enumeration
| CWE-ID | CWE Name | Source |
|---|---|---|
| NVD-CWE-Other | Weakness Not in a Standard CWE Category | [email protected] |
Affected Products
| Product | Versions |
|---|---|
| linux linux kernel | >= 2.6.16.1, < 5.10.252 >= 5.11, < 5.15.202 >= 5.16, < 6.1.165 >= 6.2, < 6.6.128 >= 6.7, < 6.12.75 >= 6.13, < 6.18.14 >= 6.19, < 6.19.4 2.6.16 - 2.6.16 rc2 2.6.16 rc3 2.6.16 rc4 2.6.16 rc5 2.6.16 rc6 |
CPE
Remediation
| |
Change History
3 change records found show changes
| Date | Action | Recorded By |
|---|---|---|
| Jun 17, 2026 | CVE Modified | kernel.org |
| Jun 16, 2026 | Initial Analysis | [email protected] |
| May 27, 2026 | New CVE Received | kernel.org |