Double free in Linux kernel - CVE-2026-64382
Published: July 27, 2026
Vulnerability details
The vulnerability allows a local user to cause a denial of service.
The vulnerability exists due to double free in SMB2_open() when handling replayable error conditions during SMB2 open request processing. A local user can trigger a replayable error that leads to stale response buffer bookkeeping to cause a denial of service.
The issue affects the Linux kernel SMB client implementation.
Affected software
How to mitigate CVE-2026-64382
External References
- https://git.kernel.org/stable/c/02bc2896bdc3e29362d6e40d404006944a159c25
- https://git.kernel.org/stable/c/14498ff5ce0f272ce0ef988721413e06b7038972
- https://git.kernel.org/stable/c/3196b5192f246df4272072f61a2f4a3e9967f55d
- https://git.kernel.org/stable/c/b55e182f2324bc6a604c21a47aa6c448f719a532
- https://git.kernel.org/stable/c/ff2d30927bc3bf3c629f0768d2068096e64ef5ce