CVE-2026-53049
In the Linux kernel, the following vulnerability has been resolved:
gfs2: add some missing log locking
Function gfs2logd() calls the log flushing functions gfs2ail1_start(),
gfs2ail1wait(), and gfs2ail1empty() without holding sdp->sdlogflush_lock,
but these functions require exclusion against concurrent transactions.
To fix that, add a non-locking _gfs2log_flush() function. Then, in
gfs2logd(), take sdp->sdlogflushlock before calling the above mentioned log
flushing functions and _gfs2log_flush().
Package Versions Affected
Automatically patch vulnerabilities without upgrading
CVSS Version



Related Resources
References
https://git.kernel.org/stable/c/3b28eb75afe520972bacc833850c2b30aa0824cd, https://git.kernel.org/stable/c/49d9be0722da3a4a893ba905720cba1921834ec3, https://git.kernel.org/stable/c/98e8bf249c790d56de1abc4a5f8bd68035a00921, https://git.kernel.org/stable/c/bf5fcd9c37c2546beaf7b401d31aefd89017dc3d, https://git.kernel.org/stable/c/ca95342cb1b39062a03c115830286f0a426053d5, https://git.kernel.org/stable/c/f2f225cf505ac016132ded21690f3ba0a080a4e8, https://git.kernel.org/stable/c/fe2c8d051150b90b3ccb85f89e3b1d636cb88ec8, https://github.com/CVEProject/cvelistV5/tree/main/cves/2026/53xxx/CVE-2026-53049.json, https://nvd.nist.gov/vuln/detail/CVE-2026-53049, https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git