- EPSS 0.2%
- Veröffentlicht 17.09.2026 16:07:01
- Zuletzt bearbeitet 17.09.2026 17:17:11
In the Linux kernel, the following vulnerability has been resolved: smb: server: fix leak of ksmbd_ipc_login_request_ext() returned buffer Free it unconditionally after ksmbd_alloc_user() calls. kmemleak splat: unreferenced object 0xffff888103b8...
CVE-2026-90173
- EPSS 0.52%
- Veröffentlicht 17.09.2026 16:07:00
- Zuletzt bearbeitet 18.09.2026 18:17:45
In the Linux kernel, the following vulnerability has been resolved: smb: smbdirect: free completion queues with ib_free_cq() smbdirect_connection_destroy_qp() creates the send and receive completion queues with ib_alloc_cq_any(), which for IB_POLL_...
- EPSS 0.19%
- Veröffentlicht 17.09.2026 16:06:59
- Zuletzt bearbeitet 17.09.2026 17:17:10
In the Linux kernel, the following vulnerability has been resolved: smb: smbdirect: release pending child sockets outside the handler lock smbdirect_socket_destroy() releases the listener's pending/ready child sockets while still holding the listen...
CVE-2026-90172
- EPSS 0.47%
- Veröffentlicht 17.09.2026 16:06:59
- Zuletzt bearbeitet 18.09.2026 18:17:45
In the Linux kernel, the following vulnerability has been resolved: smb: smbdirect: destroy QP before mem pools on accept failure On the rdma_accept_failed error path of smbdirect_accept_connect_request(), the receive io posted just above is owned ...
- EPSS 0.2%
- Veröffentlicht 17.09.2026 16:06:58
- Zuletzt bearbeitet 17.09.2026 17:17:10
In the Linux kernel, the following vulnerability has been resolved: ksmbd: validate ipc response length before dereferencing its fields ipc_validate_msg() computes the expected message size by reading length fields out of the response buffer suppli...
- EPSS 0.19%
- Veröffentlicht 17.09.2026 16:06:57
- Zuletzt bearbeitet 18.09.2026 18:17:44
Rejected reason: This CVE ID has been rejected or withdrawn by its CVE Numbering Authority.
- EPSS 0.24%
- Veröffentlicht 17.09.2026 16:06:57
- Zuletzt bearbeitet 17.09.2026 17:17:10
In the Linux kernel, the following vulnerability has been resolved: ksmbd: free preauth sessions on connection teardown SMB3.1.1 multichannel binding preserves the preauthentication hash in a preauth_session between the NTLM negotiate and authentic...
- EPSS 0.19%
- Veröffentlicht 17.09.2026 16:06:56
- Zuletzt bearbeitet 17.09.2026 17:17:10
In the Linux kernel, the following vulnerability has been resolved: ksmbd: serialize oplock close with pending break ownership close may abort an in-flight oplock break while another breaker already holds an opinfo reference. Releasing pending_brea...
- EPSS 0.2%
- Veröffentlicht 17.09.2026 16:06:55
- Zuletzt bearbeitet 17.09.2026 17:17:09
In the Linux kernel, the following vulnerability has been resolved: smb/server: fix invalid pointer dereference in ksmbd_stop_durable_scavenger() See the procedure below: ksmbd_launch_ksmbd_durable_scavenger durable_scavenger_running = true ...
- EPSS 0.2%
- Veröffentlicht 17.09.2026 16:06:55
- Zuletzt bearbeitet 17.09.2026 17:17:09
In the Linux kernel, the following vulnerability has been resolved: smb/server: fix null-ptr-deref in ksmbd_ipc_tree_connect_request() See the procedure below: ksmbd_tree_conn_connect ksmbd_share_config_get share->name = kstrdup() // f...