OVERVIEW CVE-2026-31447 is a Linux kernel vulnerability affecting the ext4 filesystem implementation. The issue involves improper validation during filesystem mounting when bigalloc (big cluster allocation) is combined with a non-zero s_first_data_block configuration, a combination that is not supported. The vulnerability requires rejection of such malformed mount attempts to prevent potential system instability. SEVERITY The vulnerability carries a low severity profile with a FAUCET Risk Score of 20.0/100 and an extremely low EPSS score of 0.000240. No CVSS vector data is available. Exploitation would require local access to the affected system and administrative privileges to mount a crafted ext4 filesystem image, making the attack complexity relatively high and limiting the exposure surface. EXPLOITATION STATUS There is no indication of active exploitation in the wild, as the vulnerability is not listed on the CISA Known Exploited Vulnerabilities catalog and remains inactive on public hot lists. No public exploit code has been reported, and community attention appears minimal. This represents a defensive patch to prevent a potential denial-of-service condition rather than an actively targeted security flaw.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
>= 3.2, < 5.10.253CPE matchmatch criteria | cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:* | ||
>= 5.11, < 5.15.203CPE matchmatch criteria | cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:* | ||
>= 5.16, < 6.1.168CPE matchmatch criteria | cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:* | ||
>= 6.2, < 6.6.131CPE matchmatch criteria | cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:* | ||
>= 6.7, < 6.12.80CPE matchmatch criteria | cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:* |
CVSS version used by this source: 3.1
CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
The average CVE in this peer group has 0.0 Twitter, 0.1 Reddit, 0.1 Bluesky, 0.0 Mastodon, and 0.2 GitHub mentions.
No media coverage found for this CVE.
The average CVE in this peer group has 0.3 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.
Linux kernel (Azure CVM) vulnerabilities
Jul 24, 2026Linux kernel vulnerabilities
Jul 24, 2026Linux kernel (Azure CVM) vulnerabilities
Jul 24, 2026Linux kernel (Azure FIPS) vulnerabilities
Jul 24, 2026Linux kernel (Azure CVM) vulnerabilities
Jul 24, 2026Linux kernel (Azure) vulnerabilities
Jul 24, 2026Linux kernel (AWS) vulnerabilities
Jul 24, 2026Linux kernel (NVIDIA) vulnerabilities
Jul 23, 2026Linux kernel (Oracle) vulnerabilities
Jul 23, 2026Linux kernel vulnerabilities
Jul 23, 2026Linux kernel (NVIDIA Tegra) vulnerabilities
Jul 21, 2026Linux kernel vulnerabilities
Jul 21, 2026Linux kernel (GCP FIPS) vulnerabilities
Jul 21, 2026Linux kernel vulnerabilities
Jul 20, 2026ext4: reject mount if bigalloc with s_first_data_block != 0
Apr 14, 2026