Improper access control in Linux kernel - CVE-2026-93282
Published: September 25, 2026
Vulnerability details
The vulnerability allows a remote user to obtain unauthorized file access rights.
The vulnerability exists due to improper access control in the ksmbd DACL maximum access calculation when processing SMB2 open requests that request maximal access. A remote user can request maximal access to a file to obtain unauthorized file access rights.