In the Linux kernel, the following vulnerability has been resolved: NFSD: remove flawed WARN_ON_ONCE from nfsd_mode_check The header for commit… (CVE-2026-89711)
A vulnerability in the Linux kernel's NFSD component related to the nfsd_mode_check function has been resolved. The issue involved a flawed WARN_ON_ONCE check that was based on an invalid assumption in the context of NFS reexport. This flaw could cause a NULL pointer dereference due to a missing lookup method pointer in certain dentry structures. The fix removes the flawed WARN_ON_ONCE while preserving the error return that prevents dereferencing a NULL method pointer.
AI Analysis
Technical Summary
The Linux kernel NFSD vulnerability (CVE-2026-89711) stems from an incorrect WARN_ON_ONCE check in the nfsd_mode_check() function. The original assumption that justified this warning was invalid in cases of NFS reexport, where nfsd_mode_check() may encounter a dentry without a valid i_op->lookup method pointer. The fix removes the WARN_ON_ONCE but retains the nfserr_notdir return code, which prevents a NULL pointer dereference during subsequent lookup operations by guarding calls to inode->i_op->lookup().
Potential Impact
If unmitigated, the flawed WARN_ON_ONCE could lead to a NULL pointer dereference in the NFSD code path during NFS filesystem exports, potentially causing kernel instability or crashes. However, the nfserr_notdir return code remains in place to prevent dereferencing a NULL method pointer, mitigating the risk of exploitation.
Mitigation Recommendations
A fix has been applied to the Linux kernel to remove the flawed WARN_ON_ONCE check while preserving the error handling that prevents NULL pointer dereferences. Users should update to the fixed kernel version containing commit e75b23f9e323 or later. No additional mitigation is required beyond applying this official fix.
In the Linux kernel, the following vulnerability has been resolved: NFSD: remove flawed WARN_ON_ONCE from nfsd_mode_check The header for commit… (CVE-2026-89711)
Description
A vulnerability in the Linux kernel's NFSD component related to the nfsd_mode_check function has been resolved. The issue involved a flawed WARN_ON_ONCE check that was based on an invalid assumption in the context of NFS reexport. This flaw could cause a NULL pointer dereference due to a missing lookup method pointer in certain dentry structures. The fix removes the flawed WARN_ON_ONCE while preserving the error return that prevents dereferencing a NULL method pointer.
AI-Powered Analysis
Machine-generated threat intelligence
Technical Analysis
The Linux kernel NFSD vulnerability (CVE-2026-89711) stems from an incorrect WARN_ON_ONCE check in the nfsd_mode_check() function. The original assumption that justified this warning was invalid in cases of NFS reexport, where nfsd_mode_check() may encounter a dentry without a valid i_op->lookup method pointer. The fix removes the WARN_ON_ONCE but retains the nfserr_notdir return code, which prevents a NULL pointer dereference during subsequent lookup operations by guarding calls to inode->i_op->lookup().
Potential Impact
If unmitigated, the flawed WARN_ON_ONCE could lead to a NULL pointer dereference in the NFSD code path during NFS filesystem exports, potentially causing kernel instability or crashes. However, the nfserr_notdir return code remains in place to prevent dereferencing a NULL method pointer, mitigating the risk of exploitation.
Mitigation Recommendations
A fix has been applied to the Linux kernel to remove the flawed WARN_ON_ONCE check while preserving the error handling that prevents NULL pointer dereferences. Users should update to the fixed kernel version containing commit e75b23f9e323 or later. No additional mitigation is required beyond applying this official fix.
Technical Details
- Gcve Source
- db.gcve.eu
- Osv Id
- GHSA-f2q5-7q65-xqx7
- Osv Schema Version
- 1.4.0
- Aliases
- ["CVE-2026-89711"]
Threat ID: 6aa49ffd55bf5e2cf5a865f0
Added to database: 09/12/2026, 00:42:37 UTC
Last enriched: 09/12/2026, 00:52:56 UTC
Last updated: 09/12/2026, 00:52:56 UTC
Views: 2
Community Reviews
0 reviewsCrowdsource mitigation strategies, share intel context, and vote on the most helpful responses. Sign in to add your voice and help keep defenders ahead.
Want to contribute mitigation steps or threat intel context? Sign in or create an account to join the community discussion.
Actions
Updates to AI analysis require Pro Console access. Upgrade inside Console → Billing.
Need more coverage?
Upgrade to Pro Console for AI refresh and higher limits.
For incident response and remediation, OffSeq services can help resolve threats faster.
Latest Threats
Check if your credentials are on the dark web
Instant breach scanning across billions of leaked records. Free tier available.