{
  "affected": [
    {
      "ecosystem_specific": {
        "urgency": "not yet assigned"
      },
      "package": {
        "ecosystem": "Debian:14",
        "name": "linux"
      },
      "ranges": [
        {
          "events": [
            {
              "introduced": "0"
            }
          ],
          "type": "ECOSYSTEM"
        }
      ]
    }
  ],
  "details": "In the Linux kernel, the following vulnerability has been resolved:  btrfs: zoned: don't force read-only on transient -EAGAIN from reloc merge  On a zoned FS, btrfs_delayed_refs_rsv_refill() returns -EAGAIN whenever the over-committed metadata plus the zone_unusable bytes exceeds the usable size in a metadata block-group to avoid heavy over-commit of metadata and early ENOSPC in one transaction.  If this happens while doing reclaim, the transaction is getting aborted.  Treat -EAGAIN as a soft, retryable condition in case of block-group reclaim.",
  "id": "DEBIAN-CVE-2026-90266",
  "modified": "2026-09-18T04:47:37.565919294Z",
  "published": "2026-09-17T17:17:23.147Z",
  "references": [
    {
      "type": "ADVISORY",
      "url": "https://security-tracker.debian.org/tracker/CVE-2026-90266"
    }
  ],
  "upstream": [
    "CVE-2026-90266"
  ]
}