GHSA-r8gf-cwvf-97c5HighCVSS 7.0
In the Linux kernel, the following vulnerability has been resolved: smb/client: zero-initialize...
🔗 CVE IDs covered (1)
📋 Description
In the Linux kernel, the following vulnerability has been resolved:
smb/client: zero-initialize stack-allocated cifs_open_info_data
Stack-allocated cifs_open_info_data may contain random data. This can make some fields have wrong value if they are not set later.
🔗 References (5)
- https://nvd.nist.gov/vuln/detail/CVE-2026-93801
- https://git.kernel.org/stable/c/22532dd88694ed20bdd47523ffa709f166ce776b
- https://git.kernel.org/stable/c/74ff47e6c4213fcfeba2de448d9cbda200507d22
- https://git.kernel.org/stable/c/8fce4cf4369c766a3293a05419500cbfde72e60d
- https://github.com/advisories/GHSA-r8gf-cwvf-97c5