CVE-2026-31519: btrfs: set BTRFS_ROOT_ORPHAN_CLEANUP during subvol create
btrfs: set BTRFSROOTORPHANCLEANUP during subvol create
Affected Software
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Upgrade
Upgrade to a fixed release to a version that resolves this vulnerability.
Fixed in 6.6.134.1-2 - Operational
Drop the dentry cache to mitigate the broken subvolume dentry state; after the cache is dropped, the next lookup into the subvolume can run btrfs_orphan_cleanup() and the subvolume can be deleted if needed.
Event History
Frequently Asked Questions
What is the severity of CVE-2026-31519?
CVE-2026-31519 has a medium severity rating due to potential data integrity issues.
How do I fix CVE-2026-31519?
To fix CVE-2026-31519, you should update to the latest stable version of the Linux kernel that includes the patch.
What software is affected by CVE-2026-31519?
CVE-2026-31519 affects the Linux kernel specifically related to btrfs file system operations.
What type of vulnerability is CVE-2026-31519?
CVE-2026-31519 is a security vulnerability that pertains to improper handling of subvolumes in the btrfs file system.
Can CVE-2026-31519 lead to data loss?
Yes, if exploited, CVE-2026-31519 could potentially lead to data loss due to broken dentries.