CVE-2026-43132
Description
In the Linux kernel, the following vulnerability has been resolved: dm-verity: correctly handle dm_bufio_client_create() failure If either of the calls to dm_bufio_client_create() in verity_fec_ctr() fails, then dm_bufio_client_destroy() is later called with an ERR_PTR() argument. That causes a crash. Fix this.
Predictions
Heuristic predictions, AS-IS, for prioritization only.
Mitigations
No mitigations published for this CVE yet.
The vendor-content worker queues fetches as references arrive (check back in a few minutes). Or โ if you've already worked around this in production โ publish your fix to the community-verified tier.
โ Propose a mitigation on Community โ Mitigations published via the community go through AI scoring + 2 human reviewers + 7-day silent objection window before landing here withsource_tier=community-verified.
OS impact
| OS | Version | Status | Fixed in |
|---|---|---|---|
| sles | affected | | |
| debian | bookworm | fixed | 6.1.170-1 |
| debian | forky | fixed | 6.19.6-1 |
| debian | sid | fixed | 6.19.6-1 |
| debian | trixie | fixed | 6.12.85-1 |
| linux-kernel | affected | 5.10.252 | |
| debian | bullseye | fixed | 5.10.257-1 |
References
- https://git.kernel.org/stable/c/031f2adc1499b112a39ac316bbab3c80bba16cf2
- https://git.kernel.org/stable/c/119f4f04186fa4f33ee6bd39af145cdaff1ff17f
- https://git.kernel.org/stable/c/451cc650e40e8c3222d37877a9e4be0fcaacb9c8
- https://git.kernel.org/stable/c/5c2217ddb3b7e7ac25f4ebe9061258fc8f1c9167
- https://git.kernel.org/stable/c/6283e49af87a9c121bb01e5a64a7fe5706c210bc
- https://git.kernel.org/stable/c/9b8dc1d327e2928f3da59ced0595d850d31c0936
- https://git.kernel.org/stable/c/b154a868a3856fb5216c4f82981d8a503832e095
- https://git.kernel.org/stable/c/d3e1f1adc8a0289efe2d2cdc90edb8c6ffe0b5ef
- https://www.suse.com/security/cve/CVE-2026-43132.html
- https://security-tracker.debian.org/tracker/CVE-2026-43132
Community-verified mitigations for this CVE will appear above when contributors publish them.
Verify integrity in audit chain (admin only). AS-IS.