{
  "affected": [
    {
      "ranges": [
        {
          "events": [
            {
              "introduced": "7880b1f0adef4d363f42d6bb42aab3211291351b"
            },
            {
              "fixed": "e506e127fcb4e2bad1045805f1740b395eea9618"
            }
          ],
          "repo": "https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git",
          "type": "GIT"
        },
        {
          "events": [
            {
              "introduced": "3581868f51a2edb027a898988b5b5a4ba379ee55"
            },
            {
              "fixed": "5b756fbb60b5d26063f46a11a3c7daa7eb616d79"
            }
          ],
          "repo": "https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git",
          "type": "GIT"
        },
        {
          "events": [
            {
              "introduced": "9c235dfc3d3f901fe22acb20f2ab37ff39f2ce02"
            },
            {
              "fixed": "a233b3362a3c7bf23f5143b4ef4b17ec337fcb4d"
            },
            {
              "fixed": "38a4dbe588bd028a07a77dc5cee62ee3ce21e87d"
            },
            {
              "fixed": "36a31b12540c0a0a3b77a01fda86de646f2961fb"
            },
            {
              "fixed": "e2b4a856085e9bd939bde2dee0d08b1d41babde9"
            }
          ],
          "repo": "https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git",
          "type": "GIT"
        },
        {
          "events": [
            {
              "introduced": "6.1.128"
            },
            {
              "fixed": "6.1.184"
            }
          ],
          "repo": "https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git",
          "type": "GIT"
        },
        {
          "events": [
            {
              "introduced": "6.6.17"
            },
            {
              "fixed": "6.6.153"
            }
          ],
          "repo": "https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git",
          "type": "GIT"
        }
      ]
    },
    {
      "package": {
        "ecosystem": "Linux",
        "name": "Kernel"
      },
      "ranges": [
        {
          "events": [
            {
              "introduced": "0"
            },
            {
              "fixed": "6.1.184"
            }
          ],
          "type": "ECOSYSTEM"
        },
        {
          "events": [
            {
              "introduced": "6.2.0"
            },
            {
              "fixed": "6.6.153"
            }
          ],
          "type": "ECOSYSTEM"
        },
        {
          "events": [
            {
              "introduced": "6.7.0"
            },
            {
              "fixed": "6.12.105"
            },
            {
              "fixed": "6.18.46"
            }
          ],
          "type": "ECOSYSTEM"
        },
        {
          "events": [
            {
              "introduced": "6.13.0"
            },
            {
              "fixed": "7.1.10"
            }
          ],
          "type": "ECOSYSTEM"
        }
      ]
    }
  ],
  "database_specific": {
    "cna_assigner": "Linux",
    "osv_generated_from": "https://github.com/CVEProject/cvelistV5/tree/main/cves/2026/80xxx/CVE-2026-80529.json"
  },
  "details": "In the Linux kernel, the following vulnerability has been resolved:\n\nxfs: don't swallow dquot recovery verification errors\n\nxlog_recover_dquot_commit_pass2() validates the recovered dquot with\nxfs_dqblk_verify() and, on failure, sets error = -EFSCORRUPTED and jumps\nto out_release.  But out_release unconditionally returns 0, so the\ncorruption error is discarded: the caller xlog_recover_items_pass2()\nsees success, log recovery proceeds as if the dquot were valid, and the\ncorrupt quota buffer can be written back to disk.",
  "id": "CVE-2026-80529",
  "modified": "2026-08-28T11:30:43.582405166Z",
  "published": "2026-08-26T14:37:07.390Z",
  "references": [
    {
      "type": "WEB",
      "url": "https://git.kernel.org/stable/c/36a31b12540c0a0a3b77a01fda86de646f2961fb"
    },
    {
      "type": "WEB",
      "url": "https://git.kernel.org/stable/c/38a4dbe588bd028a07a77dc5cee62ee3ce21e87d"
    },
    {
      "type": "WEB",
      "url": "https://git.kernel.org/stable/c/5b756fbb60b5d26063f46a11a3c7daa7eb616d79"
    },
    {
      "type": "WEB",
      "url": "https://git.kernel.org/stable/c/a233b3362a3c7bf23f5143b4ef4b17ec337fcb4d"
    },
    {
      "type": "WEB",
      "url": "https://git.kernel.org/stable/c/e2b4a856085e9bd939bde2dee0d08b1d41babde9"
    },
    {
      "type": "WEB",
      "url": "https://git.kernel.org/stable/c/e506e127fcb4e2bad1045805f1740b395eea9618"
    },
    {
      "type": "ADVISORY",
      "url": "https://github.com/CVEProject/cvelistV5/tree/main/cves/2026/80xxx/CVE-2026-80529.json"
    },
    {
      "type": "ADVISORY",
      "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-80529"
    },
    {
      "type": "PACKAGE",
      "url": "https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git"
    }
  ],
  "schema_version": "1.9.0",
  "summary": "xfs: don't swallow dquot recovery verification errors"
}