Integer underflow in Linux kernel - CVE-2026-89630
Published: September 12, 2026
Vulnerability details
The vulnerability allows a remote attacker to cause an out-of-bounds read.
The vulnerability exists due to an integer underflow in is_valid_oplock_break() in the SMB client when processing a specially crafted SMB oplock break message. A remote attacker can send a specially crafted SMB oplock break message to cause an out-of-bounds read.