CVE-2026-68422

Source
https://cve.org/CVERecord?id=CVE-2026-68422
Import Source
https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2026-68422.json
JSON Data
https://api.test.osv.dev/v1/vulns/CVE-2026-68422
Downstream
Published
2026-08-10T12:04:42.949Z
Modified
2026-08-12T04:24:32.691874931Z
Summary
btrfs: fix root leak if its reloc root is unexpected in merge_reloc_roots()
Details

In the Linux kernel, the following vulnerability has been resolved:

btrfs: fix root leak if its reloc root is unexpected in mergerelocroots()

If we have an unexpected relocroot for our root, we jump to the out label but never drop the reference we obtained for root, resulting in a leak. Add a missing btrfsput_root() call.

Database specific
{
    "cna_assigner": "Linux",
    "osv_generated_from": "https://github.com/CVEProject/cvelistV5/tree/main/cves/2026/68xxx/CVE-2026-68422.json"
}
References

Affected packages

Git / git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git

Affected ranges

Type
GIT
Repo
https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git
Events
Introduced
24213fa46c7080c31d79aa2e3e2f0d9480cab700
Fixed
b3d39b03799600c76c33486e2d29b73a771023db
Fixed
72f673d1c1deb819554d3e7e154f6d84301eb735
Fixed
60a23d4ea169e27403f3bb023bb98036797c0206
Fixed
7591d1727067d6063247901ad25c4bdc4e5695c4
Fixed
ce6050bafb4e33377dc17fcc357736bfc351180c

Database specific

source
"https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2026-68422.json"

Linux / Kernel

Package

Name
Kernel

Affected ranges

Type
ECOSYSTEM
Events
Introduced
5.13.0
Fixed
6.6.148
Type
ECOSYSTEM
Events
Introduced
6.7.0
Fixed
6.12.101
Type
ECOSYSTEM
Events
Introduced
6.13.0
Fixed
6.18.42
Type
ECOSYSTEM
Events
Introduced
6.19.0
Fixed
7.1.6

Database specific

source
"https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2026-68422.json"