CVE-2026-43117Disclosure(linux / linux_kernel)

LOWCVSS 9.1 · CRITICAL

Signal is active with 4 mentions in latest observed window

Immediate actions

  • Patch linux linux_kernel systems immediately

Recommended action window: Monitor and triage in normal cycle

NVD description

In the Linux kernel, the following vulnerability has been resolved: btrfs: tracepoints: get correct superblock from dentry in event btrfs_sync_file() If overlay is used on top of btrfs, dentry->d_sb translates to overlay's super block and fsid assignment will lead to a crash. Use file_inode(file)->i_sb to always get btrfs_sb.

0.5/ 10 priority

Sources & remediation

Priority

LOW

Exploitation

NONE

PoC

NONE

Patch

AVAILABLE

Momentum

STABLE

Are you affected?

If you run products in this scope, you should treat this CVE as relevant to your environment.

  • linux_kernel

Threat summary

  • Patch or workaround signal is available
  • 5 mentions across 2 observed days
  • Momentum state: stable

What's happening

  • Patch or workaround mentioned in 1 signal
  • Technical details provided in 4 signals
  • Disclosure: 3 classified signals
  • General: 1 classified signal
  • Peaked at 4 mentions on most recent observed day (2026-05-13)
  • 5 total mentions across 2 days

Affected systems

Vendors
Products
linux_kernel

1 version affected across 1 product

Deep dive

Activity timeline5 mentions / 2d
01234Mentions · 2026-05-06: 1Mentions · 2026-05-13: 4Patch / Workaround · 2026-05-13: 1Technical Details · 2026-05-06: 1Technical Details · 2026-05-13: 305-0605-13
Signal classification3 categories
Disclosure
360.0%
General
120.0%
Patch
120.0%
Referenced assets3 URLs
Classification over time
DateTotalLabels
2026-05-061
Disclosure1
2026-05-134
Disclosure2General1Patch1
Full discourse5 posts
  • Lyrie.ai@lyrie_ai
    Disclosure

    --- Validated by the Lyrie Threat Intelligence Pipeline — 3 independent sources confirmed before publication. No speculation. CVE: CVE-2026-43117 CVSS: 9.1 (3.1) — CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:H Severity: CRITICAL Status: Critical advisory

    Post summary

    A critical advisory for CVE‑2026‑43117 is issued, highlighting its CVSS 9.1 score and severity, but no PoC, exploit or patch details are disclosed.

    1000031
    210 followersView on X
  • Lyrie.ai@lyrie_ai
    Patch

    CVE: CVE-2026-43117 CVSS: 9.1 (3.1) — CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:H Severity: CRITICAL Status: Critical advisory In the Linux kernel, the following vulnerability has been resolved: btrfs: tracepoints: get correct superblock from dentry in event…

    Post summary

    CVE-2026-43117 is a critical Linux kernel vulnerability in btrfs that has been resolved, but no PoC, exploit, or active exploitation details are provided.

    1000029
    210 followersView on X
  • Lyrie.ai@lyrie_ai
    Disclosure

    CRITICAL: CVE-2026-43117 (CVSS 9.1) — multiple products. CVE: CVE-2026-43117 CVSS: 9.1 (3.1) — CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:H Severity: CRITICAL Status: Critical advisory

    Post summary

    The advisory announces CVE-2026-43117 as a critical vulnerability with a CVSS score of 9.1, but provides no further exploitation or mitigation details.

    1000035
    210 followersView on X
  • Lyrie.ai@lyrie_ai
    General

    https://lyrie.ai/research/research/cve-2026-43117-advisory #lyrie #cybersecurity #CVE #threatintel #zerodayattack

    Post summary

    The tweet contains only a URL and hashtags, lacking any substantive information about the CVE.

    0000024
    210 followersView on X
  • Vulmon Vulnerability Feed@VulmonFeeds
    Disclosure

    CVE-2026-43117 Btrfs Tracepoint Crash via Incorrect Superblock Reference... https://vulmon.com/vulnerabilitydetails?qid=CVE-2026-43117 Don't wait vulnerability scanning results: https://alerts.vulmon.com/?utm_source=twitter&utm_medium=social&utm_campaign=2102281&utm_content=2

    Post summary

    The tweet announces CVE‑2026‑43117, highlighting a Btrfs tracepoint crash caused by an incorrect superblock reference, and directs readers to a vulnerability details page, but it contains no PoC, exploit code, patch info, or active exploitation evidence.

    0000045
    4.0K followersView on X
CPE platform detail6 entries

6 of 6 entries

PartVendorProductVersionTarget SWTarget HW
OSlinuxlinux_kernel---
OSlinuxlinux_kernel7.0--
OSlinuxlinux_kernel7.0--
OSlinuxlinux_kernel7.0--
OSlinuxlinux_kernel7.0--
OSlinuxlinux_kernel7.0--

Explore more