CVE-2026-45984 is a use-after-free vulnerability in the Linux kernel GFS2 filesystem's iomap inline-data write path. In gfs2_iomap_begin(), iomap->inline_data is set to reference inode data held by the dibh buffer head. release_metapath() subsequently releases that buffer head through brelse(), potentially dropping its reference count to zero while the inline-data pointer remains in use. If kswapd reclaims the backing page before iomap_write_end_inline() completes, the subsequent memcpy() writes to freed kernel memory. KASAN detected this invalid write. The vulnerability can cause kernel memory corruption and denial of service, with privilege escalation potentially possible depending on exploitability. No C reproducer is available; the corrective change was developed through KASAN report analysis and code review.
Mallory correlates every CVE against your assets, your vendors, and active adversary campaigns. Know which vulnerabilities matter for you, not just which ones are loud.
What it means. What to do now. Patch path, mitigations, and the assume-compromise checklist.
What an attacker gets, and what they’ve been doing with it.
If you can’t patch tonight, do this now.
Patch, then assume compromise.
No public exploits tracked yet. Mallory keeps watching.
No public exploit code observed for this vulnerability.
Products and vendors Mallory has correlated with this vulnerability. Open in Mallory to drill down to specific CPE configurations and version ranges.
Vendor-confirmed product mapping. Mallory continuously reconciles this list against your asset inventory.
42 sources tracked across advisories, community write-ups, and news. New activity surfaces here as Mallory finds it.
A use-after-free vulnerability in the Linux kernel GFS2 filesystem's iomap inline-data write path. RHSA-2026:77217 supplies a patched kernel; activation requires a reboot.
A use-after-free vulnerability in the Linux kernel GFS2 filesystem's iomap inline-data write path, affecting Red Hat Enterprise Linux 9. Kernel live-patch updates are available through RHSA-2026:59145; the content does not specify exploitation prerequisites or consequences.
A use-after-free vulnerability in the Linux kernel GFS2 filesystem's iomap inline-data write path. It affects Red Hat Enterprise Linux 7 kernel-rt packages covered by RHSA-2026:63189.
A use-after-free vulnerability in the Linux kernel GFS2 iomap inline-data write path. It is addressed by the RHSA-2026:61692 RHEL 7 kernel update.
Query your assets running an affected version, and investigate the blast radius.
Every observed campaign linking this CVE to a named adversary.
Malware families riding this exploit, with evidence and IOCs.
YARA, Sigma, Snort, and vendor rules, auto-deployed to your SIEM.
Cross-references every affected SKU, including bundled OEM variants.
Community discussion across Reddit, Mastodon, and other social sources.