In the Linux kernel, the following vulnerability has been resolved: s390/dasd: Propagate partial completion length across ERP recovery… (CVE-2026-89456)
A vulnerability in the Linux kernel's s390/dasd driver was resolved involving improper handling of partial completion lengths during ERP recovery. The issue caused the partial completion length (proc_bytes) to be dropped when propagating state back to the original request, leading to silent data corruption by returning zeroed data for unread parts of a request.
AI Analysis
Technical Summary
The Linux kernel s390/dasd driver had a flaw in dasd_default_erp_postaction() where the partial completion length (proc_bytes) was not propagated back to the original request after ERP recovery. This caused __dasd_cleanup_cqr() to see proc_bytes as zero and complete the entire request prematurely, returning zeroed data for the portion of the request that was never actually read. The fix involved carrying proc_bytes over to the original request like other per-request state to ensure accurate request completion handling.
Potential Impact
This vulnerability could lead to silent data corruption by returning zeroed data instead of the correct partial data for certain read requests. This affects data integrity on systems using the s390/dasd driver in the Linux kernel. There is no indication of remote exploitability or other impacts beyond data correctness.
Mitigation Recommendations
A fix for this vulnerability has been implemented in the Linux kernel. Users should apply the official kernel update that includes this patch to ensure proper handling of partial completion lengths during ERP recovery. No additional mitigation steps are indicated.
In the Linux kernel, the following vulnerability has been resolved: s390/dasd: Propagate partial completion length across ERP recovery… (CVE-2026-89456)
Description
A vulnerability in the Linux kernel's s390/dasd driver was resolved involving improper handling of partial completion lengths during ERP recovery. The issue caused the partial completion length (proc_bytes) to be dropped when propagating state back to the original request, leading to silent data corruption by returning zeroed data for unread parts of a request.
AI-Powered Analysis
Machine-generated threat intelligence
Technical Analysis
The Linux kernel s390/dasd driver had a flaw in dasd_default_erp_postaction() where the partial completion length (proc_bytes) was not propagated back to the original request after ERP recovery. This caused __dasd_cleanup_cqr() to see proc_bytes as zero and complete the entire request prematurely, returning zeroed data for the portion of the request that was never actually read. The fix involved carrying proc_bytes over to the original request like other per-request state to ensure accurate request completion handling.
Potential Impact
This vulnerability could lead to silent data corruption by returning zeroed data instead of the correct partial data for certain read requests. This affects data integrity on systems using the s390/dasd driver in the Linux kernel. There is no indication of remote exploitability or other impacts beyond data correctness.
Mitigation Recommendations
A fix for this vulnerability has been implemented in the Linux kernel. Users should apply the official kernel update that includes this patch to ensure proper handling of partial completion lengths during ERP recovery. No additional mitigation steps are indicated.
Technical Details
- Gcve Source
- db.gcve.eu
- Osv Id
- GHSA-54rx-hjqg-c852
- Osv Schema Version
- 1.4.0
- Aliases
- ["CVE-2026-89456"]
Threat ID: 6aa4a02455bf5e2cf5a869b5
Added to database: 09/12/2026, 00:43:16 UTC
Last enriched: 09/12/2026, 01:17:33 UTC
Last updated: 09/12/2026, 01:17:33 UTC
Views: 2
Community Reviews
0 reviewsCrowdsource mitigation strategies, share intel context, and vote on the most helpful responses. Sign in to add your voice and help keep defenders ahead.
Want to contribute mitigation steps or threat intel context? Sign in or create an account to join the community discussion.
Actions
Updates to AI analysis require Pro Console access. Upgrade inside Console → Billing.
Need more coverage?
Upgrade to Pro Console for AI refresh and higher limits.
For incident response and remediation, OffSeq services can help resolve threats faster.
Latest Threats
Check if your credentials are on the dark web
Instant breach scanning across billions of leaked records. Free tier available.