VYPR
High severity7.5NVD Advisory· Published Jan 23, 2026· Updated Apr 27, 2026

CVE-2026-22990

CVE-2026-22990

Description

In the Linux kernel, the following vulnerability has been resolved:

libceph: replace overzealous BUG_ON in osdmap_apply_incremental()

If the osdmap is (maliciously) corrupted such that the incremental osdmap epoch is different from what is expected, there is no need to BUG. Instead, just declare the incremental osdmap to be invalid.

Affected products

12
  • Linux/Kernel12 versions
    cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*+ 11 more
    • cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*range: >=2.6.34.1,<5.10.248
    • cpe:2.3:o:linux:linux_kernel:2.6.34:-:*:*:*:*:*:*
    • cpe:2.3:o:linux:linux_kernel:2.6.34:rc2:*:*:*:*:*:*
    • cpe:2.3:o:linux:linux_kernel:2.6.34:rc3:*:*:*:*:*:*
    • cpe:2.3:o:linux:linux_kernel:2.6.34:rc4:*:*:*:*:*:*
    • cpe:2.3:o:linux:linux_kernel:2.6.34:rc5:*:*:*:*:*:*
    • cpe:2.3:o:linux:linux_kernel:2.6.34:rc6:*:*:*:*:*:*
    • cpe:2.3:o:linux:linux_kernel:2.6.34:rc7:*:*:*:*:*:*
    • cpe:2.3:o:linux:linux_kernel:6.19:rc1:*:*:*:*:*:*
    • cpe:2.3:o:linux:linux_kernel:6.19:rc2:*:*:*:*:*:*
    • cpe:2.3:o:linux:linux_kernel:6.19:rc3:*:*:*:*:*:*
    • cpe:2.3:o:linux:linux_kernel:6.19:rc4:*:*:*:*:*:*

Patches

0

No patches discovered yet.

Vulnerability mechanics

AI mechanics synthesis has not run for this CVE yet.

News mentions

0

No linked articles in our index yet.