CVE-2026-64390
CVE CVE-2026-64390EUVD EUVD-2026-48934Veröffentlicht 2026-07-25T08:50:37.000ZZuletzt geändert 2026-08-05T12:41:27.000ZCVSS 8.8
Was das Advisory beschreibt
In the Linux kernel, the following vulnerability has been resolved: ksmbd: track the connection owning a byte-range lock SMB2_LOCK adds each granted byte-range lock to both the file lock list and the lock list of the connection which handled the request. The final close and durable handle paths, however, remove the connection list entry while holding fp->conn->llist_lock. With SMB3 multichannel, the connection handling the LOCK request can be different from the connection which opened the file. The entry can therefore be removed under a different spinlock from the one protecting the list it belongs to. A concurrent traversal can then access freed struct ksmbd_lock and struct file_lock objects. Record the connection owning each lock's clist entry and hold a reference to it while the entry is linked. Use that connection and its llist_lock for unlock, rollback, close, and durable preserve. Durable reconnect assigns the new connection as the owner when publishing the locks again.
Quelle: EUVD (ENISA), im Wortlaut der Meldung.
Produkte, die das Advisory nennt
Diese Angaben stammen aus der Meldung selbst, nicht aus einer Prüfung durch uns.
- Linux — Linux patch: 5.15.212; patch: 6.1.178; f5a544e3bab78142207e0242d22442db85ba1eff <427faaa52b0b399940c1a88065a5c310d10dad15; f5a544e3bab78142207e0242d22442db85ba1eff <22d38cf75b556c20b039743bdf3654d535b858be; patch: 7.1.4; patch: 6.12.97; 5.15; f5a544e3bab78142207e0242d22442db85ba1eff <c1016dd1d8b2bcd1158bbaabe94a31bb7e7431fb; patch: 0; patch: 6.6.145; f5a544e3bab78142207e0242d22442db85ba1eff <fe20d492a69a6f79e637f438072b212e21ed3b78; f5a544e3bab78142207e0242d22442db85ba1eff <66eb3643164e5e1029907793926c132f8b5c6148; f5a544e3bab78142207e0242d22442db85ba1eff <ea5c9bf99f626a15cc59f645dc895f2b3f01992e; patch: 6.18.40; patch: 7.2-rc1; f5a544e3bab78142207e0242d22442db85ba1eff <5fecc15a30cb9ebd310f7b52c1ab607edcea78f6
Die genannten Versionen sind die Angabe der Meldung. Patchlage vergleicht keine Versionsnummern und leitet aus ihnen keine Aussage ab — welche Version installiert ist, muss ein Mensch nachsehen.
Im Produktkatalog geführt
Für diese Produkte kann ein Bestand in Patchlage erfasst werden. Ein Advisory dazu erscheint am Morgen danach im Lagebericht.
- Linux — Linux
Betrifft das einen Ihrer Kundenbestände?
Diese Seite kann die Frage nicht beantworten — sie kennt Ihren Bestand nicht. Wer seine Umgebungen erfasst hat, bekommt die Antwort am Morgen nach der Veröffentlichung, zusammen mit einem Absatz, den er unverändert an den Kunden weitergeben kann.
28 Tage testenPatchlage meldet Treffer und Verdachtsfälle. Zu allem anderen sagt dieses System nichts — weder diese Seite noch der Lagebericht behauptet je, dass ein Bestand sicher ist.