Linux XFS reflink flaw could grant root via race condition

1 min read
Source: BleepingComputer
Linux XFS reflink flaw could grant root via race condition
Photo: BleepingComputer
TL;DR Summary

Qualys warns of RefluXFS, a nine-year-old race-condition in the XFS reflink feature (CVE-2026-64600) that enables local unprivileged users to overwrite blocks backing protected files and gain root on Linux kernels 4.11+. The attack clones a target file to a scratch file and races concurrent writes in the copy-on-write path, causing disk-block modifications that survive reboot and produce no kernel logs. Affected distros include RHEL, Oracle Linux, Amazon Linux, Fedora, CentOS Stream, Rocky Linux, AlmaLinux, and CloudLinux, potentially impacting millions. Kernel patches are available and backported; reboot to verify. There are currently no reliable mitigations beyond patching.

Share this article

Reading Insights

Total Reads

1

Unique Readers

7

Time Saved

4 min

vs 5 min read

Condensed

88%

81896 words

Want the full story? Read the original article

Read on BleepingComputer