CVE-2026-90390

Source
https://cve.org/CVERecord?id=CVE-2026-90390
Import Source
https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2026-90390.json
JSON Data
https://api.osv.dev/v1/vulns/CVE-2026-90390
Downstream
Published
2026-09-17T16:09:24Z
Modified
2026-09-19T03:47:29Z
Summary
md/bitmap: resume array on backlog_store() error path
Details

In the Linux kernel, the following vulnerability has been resolved:

md/bitmap: resume array on backlog_store() error path

backlog_store() suspends the array before checking whether a write-mostly device exists. If no such device exists, the error path only unlocks reconfig_mutex and leaves the array suspended, blocking subsequent I/O.

Use mddev_unlock_and_resume() to release both states.

Database specific
{
    "cna_assigner": "Linux",
    "osv_generated_from": "https://github.com/CVEProject/cvelistV5/tree/main/cves/2026/90xxx/CVE-2026-90390.json"
}
References

Affected packages

Git / git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git

Affected ranges

Type
GIT
Repo
https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git
Events
Introduced
58226942ad3d1423785f815ede5bcc832574f2ea
Fixed
03aad318f0a1f039dddf98739e705fdca3bf0d86
Fixed
6763fb409a0b4106676a52cf934440d9484b32c8
Fixed
cc543e769b97d563b089b9e0ebf8ad361d15076f
Fixed
2911cd0a0f4366a7e06832bc5f0a7fdcc138e4dc

Database specific

source
"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2026-90390.json"

Linux / Kernel

Package

Name
Kernel

Affected ranges

Type
ECOSYSTEM
Events
Introduced
6.7.0
Fixed
6.12.110
Type
ECOSYSTEM
Events
Introduced
6.13.0
Fixed
6.18.52
Type
ECOSYSTEM
Events
Introduced
6.19.0
Fixed
7.2.6

Database specific

source
"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2026-90390.json"