-
CVE-2026-93794
- EPSS 0.17%
- Veröffentlicht 24.09.2026 16:02:27
- Zuletzt bearbeitet 03.10.2026 11:17:49
- Erkennungen
smb/client: flush dirty data before punching a hole
In the Linux kernel, the following vulnerability has been resolved:
smb/client: flush dirty data before punching a hole
Punching a hole after a large buffered write may leave the range
reported as data. Reproduce it with:
xfs_io -f \
-c "pwrite -b 3m -S 0x61 0 3m" \
-c "fpunch 1m 1m" \
-c "seek -h 0" \
-c "seek -d 1m" \
/mnt/test/repro
Punching 1 MiB at offset 1 MiB should produce:
0 1 MiB 2 MiB 3 MiB
| DATA | HOLE | DATA | EOF
Instead, the entire file is reported as data. SEEK_HOLE(0) returns EOF,
and SEEK_DATA(1M) returns 1M.
This happens because a dirty folio spanning the punched range can be
written back after the punch and refill the hole.
Fix this by flushing and waiting for dirty data in the punched range
before invalidating the page cache and issuing FSCTL_SET_ZERO_DATA.
The xfstests generic/539 pass against Samba/ksmbd with this change.Daten sind bereitgestellt durch das CVE Programm von einer CVE Numbering Authority (CNA) (Unstrukturiert).
HerstellerLinux
≫
Produkt
Linux
Default Statusunaffected
Version
31742c5a331766bc7df6b0d525df00c6cd20d5a6
Version <
216e469586057c29409e4ef8311d282388c6e251
Status
affected
Version
31742c5a331766bc7df6b0d525df00c6cd20d5a6
Version <
6c265aca08155e519a8f6f6071c59dff4f535f70
Status
affected
Version
31742c5a331766bc7df6b0d525df00c6cd20d5a6
Version <
39562a56cdb515f6635c3e7bfe6629439b18a169
Status
affected
Version
31742c5a331766bc7df6b0d525df00c6cd20d5a6
Version <
d7d2adcd022baade5cab65ca492ce63421ce3a6e
Status
affected
HerstellerLinux
≫
Produkt
Linux
Default Statusaffected
Version
3.17
Status
affected
Version
0
Version <
3.17
Status
unaffected
Version <=
6.6.*
Version
6.6.158
Status
unaffected
Version <=
6.12.*
Version
6.12.111
Status
unaffected
Version <=
6.18.*
Version
6.18.53
Status
unaffected
Version <=
*
Version
7.2
Status
unaffected
VulnDex Vulnerability Enrichment
| Typ | Quelle | Score | Percentile |
|---|---|---|---|
| EPSS | FIRST.org | 0.17% | 0.052 |
| Quelle | Base Score | Exploit Score | Impact Score | Vector String |
|---|
https://git.kernel.org/stable/c/6c265aca08155e519a8f6f6071c59dff4f535f70
https://git.kernel.org/stable/c/39562a56cdb515f6635c3e7bfe6629439b18a169
https://git.kernel.org/stable/c/d7d2adcd022baade5cab65ca492ce63421ce3a6e
https://git.kernel.org/stable/c/216e469586057c29409e4ef8311d282388c6e251