CVE-2026-46327: Linux Kernel
High severity, CVSS 7.8. EPSS: 0.2% chance of exploitation in the next 30 days.
In the Linux kernel, the following vulnerability has been resolved: dm: fix unlocked test for dm_suspended_md The function dm_blk_report_zones tests if the device is suspended with the "dm_suspended_md" call. However, this function is called without holding any locks, so the device may be suspended just after it. Move the call to dm_suspended_md after dm_get_live_table, so that the device can't be suspended after the suspended state was tested.
Affected products
- Linux Linux Kernel: from 6.12.34, before 6.12.75 (fixed in 6.12.75); from 6.15.3, before 6.18.14 (fixed in 6.18.14); from 6.19, before 6.19.4 (fixed in 6.19.4)
Published 2026-06-09. Last modified 2026-07-23.