SB2026021614 - Memory leak in Linux kernel smb client
Published: February 16, 2026
Breakdown by Severity
- Low
- Medium
- High
- Critical
Description
This security bulletin contains information about 1 security vulnerability.
1) Memory leak (CVE-ID: CVE-2026-23205)
The vulnerability allows a local user to perform a denial of service (DoS) attack.
The vulnerability exists due to memory leak within the smb2_open_file() function in fs/smb/client/smb2file.c. A local user can perform a denial of service (DoS) attack.
Remediation
Install update from vendor's website.
References
- https://git.kernel.org/stable/c/3a6d6b332f92990958602c1e35ce0173e2dd62e9
- https://git.kernel.org/stable/c/743f70406264348c0830f38409eb6c40a42fb2db
- https://git.kernel.org/stable/c/9ee608a64e37cea5b4b13e436c559dd0fb2ad1b5
- https://git.kernel.org/stable/c/b64e3b5d8d759dd4333992e4ba4dadf9359952c8
- https://git.kernel.org/stable/c/e3a43633023e3cacaca60d4b8972d084a2b06236