CVE-2026-23053: Linux
EPSS: 0.2% chance of exploitation in the next 30 days.
In the Linux kernel, the following vulnerability has been resolved: NFS: Fix a deadlock involving nfs_release_folio() Wang Zhaolong reports a deadlock involving NFSv4.1 state recovery waiting on kthreadd, which is attempting to reclaim memory by calling nfs_release_folio(). The latter cannot make progress due to state recovery being needed. It seems that the only safe thing to do here is to kick off a writeback of the folio, without waiting for completion, or else kicking off an asynchronous commit.
Affected products
- Linux Linux: from 6.3, before 6.6.130 (fixed in 6.6.130); from 6.7, before 6.12.67 (fixed in 6.12.67); from 6.13, before 6.18.7 (fixed in 6.18.7)
Published 2026-02-04. Last modified 2026-06-17.