Improper access control in Linux kernel - CVE-2026-97561
Published: September 28, 2026
Vulnerability details
The vulnerability allows a remote attacker to control local file ownership.
The vulnerability exists due to improper access control in the Linux kernel CIFS/SMB client SID-to-UID/GID mapping logic when processing SMB server-provided SID ownership data. A remote attacker can provide SID ownership values to control local file ownership.
Only mounts configured with the forceuid or forcegid mount options are affected.