{"id":"CVE-2026-89680","summary":"nfsd: fix nfsd_file leak on inter-server COPY setup failure","details":"In the Linux kernel, the following vulnerability has been resolved:\n\nnfsd: fix nfsd_file leak on inter-server COPY setup failure\n\nWhen nfsd4_setup_inter_ssc() fails, nfsd4_copy() returns\nnfserr_offload_denied directly, bypassing the out: label where\nrelease_copy_files() would drop the nf_dst reference taken by\nnfs4_preprocess_stateid_op(). Each failed inter-server COPY\nleaks one nfsd_file, pinning file/inode/dentry/vfsmount.\n\nFix by setting status and jumping to out: instead of returning\ndirectly.","modified":"2026-09-13T03:47:20.132537895Z","published":"2026-09-11T19:46:03.468Z","database_specific":{"osv_generated_from":"https://github.com/CVEProject/cvelistV5/tree/main/cves/2026/89xxx/CVE-2026-89680.json","cna_assigner":"Linux"},"references":[{"type":"WEB","url":"https://git.kernel.org/stable/c/1a6a41b848455bf6ba2c9da2dfb0730e608ce7ab"},{"type":"WEB","url":"https://git.kernel.org/stable/c/424d5c95108a4809b832cb0a312c61de4aec0078"},{"type":"WEB","url":"https://git.kernel.org/stable/c/6ed8d6de7ec90c4ba84eb82673058f506e5777fd"},{"type":"WEB","url":"https://git.kernel.org/stable/c/88a76145451d703eedd867b5989bf73d17340399"},{"type":"ADVISORY","url":"https://github.com/CVEProject/cvelistV5/tree/main/cves/2026/89xxx/CVE-2026-89680.json"},{"type":"ADVISORY","url":"https://nvd.nist.gov/vuln/detail/CVE-2026-89680"},{"type":"PACKAGE","url":"https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git"}],"affected":[{"ranges":[{"type":"GIT","repo":"https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git","events":[{"introduced":"ce0887ac96d35c7105090e166bb0807dc0a0e838"},{"fixed":"1a6a41b848455bf6ba2c9da2dfb0730e608ce7ab"},{"fixed":"424d5c95108a4809b832cb0a312c61de4aec0078"},{"fixed":"6ed8d6de7ec90c4ba84eb82673058f506e5777fd"},{"fixed":"88a76145451d703eedd867b5989bf73d17340399"}]}],"database_specific":{"source":"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2026-89680.json"}},{"package":{"name":"Kernel","ecosystem":"Linux"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"5.6.0"},{"fixed":"6.12.109"}]},{"type":"ECOSYSTEM","events":[{"introduced":"6.13.0"},{"fixed":"6.18.50"}]},{"type":"ECOSYSTEM","events":[{"introduced":"6.19.0"},{"fixed":"7.2.4"}]}],"database_specific":{"source":"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2026-89680.json"}}],"schema_version":"1.9.0"}