CVE-2026-43132
Description
In the Linux kernel, the following vulnerability has been resolved: dm-verity: correctly handle dm_bufio_client_create() failure If either of the calls to dm_bufio_client_create() in verity_fec_ctr() fails, then dm_bufio_client_destroy() is later called with an ERR_PTR() argument. That causes a crash. Fix this.
Predictions
Heuristic predictions, AS-IS, for prioritization only.
Mitigations
No mitigations published for this CVE yet.
The vendor-content worker queues fetches as references arrive (check back in a few minutes). Or โ if you've already worked around this in production โ publish your fix to the community-verified tier.
โ Propose a mitigation on Community โ Mitigations published via the community go through AI scoring + 2 human reviewers + 7-day silent objection window before landing here withsource_tier=community-verified.
OS impact
Linux kernel Affected 1 release
| Version | Status | Fixed in |
|---|---|---|
| โ | Affected | 5.10.252 |
SUSE Affected 1 release
| Version | Status | Fixed in |
|---|---|---|
| โ | Affected | โ |
Debian Fixed 5 releases
| Version | Status | Fixed in |
|---|---|---|
| trixie | Fixed | 6.12.85-1 |
| sid | Fixed | 6.19.6-1 |
| forky | Fixed | 6.19.6-1 |
| bullseye | Fixed | 5.10.257-1 |
| bookworm | Fixed | 6.1.170-1 |
References
- https://git.kernel.org/stable/c/031f2adc1499b112a39ac316bbab3c80bba16cf2
- https://git.kernel.org/stable/c/119f4f04186fa4f33ee6bd39af145cdaff1ff17f
- https://git.kernel.org/stable/c/451cc650e40e8c3222d37877a9e4be0fcaacb9c8
- https://git.kernel.org/stable/c/5c2217ddb3b7e7ac25f4ebe9061258fc8f1c9167
- https://git.kernel.org/stable/c/6283e49af87a9c121bb01e5a64a7fe5706c210bc
- https://git.kernel.org/stable/c/9b8dc1d327e2928f3da59ced0595d850d31c0936
- https://git.kernel.org/stable/c/b154a868a3856fb5216c4f82981d8a503832e095
- https://git.kernel.org/stable/c/d3e1f1adc8a0289efe2d2cdc90edb8c6ffe0b5ef
- https://www.suse.com/security/cve/CVE-2026-43132.html
- https://security-tracker.debian.org/tracker/CVE-2026-43132
Community-verified mitigations for this CVE will appear above when contributors publish them.
Verify integrity in audit chain (admin only). AS-IS.