Improper Authorization in Linux kernel - CVE-2026-98126
Published: September 28, 2026
Vulnerability details
The vulnerability allows a local user to bypass file-size limits.
The vulnerability exists due to missing file-size limit validation in smb3_zero_range() when using FALLOC_FL_ZERO_RANGE without FALLOC_FL_KEEP_SIZE on a file on a CIFS mount. A local user can invoke a zero-range operation that extends the end of the file to bypass file-size limits.