๐Ÿ” CVE Alert

CVE-2026-31611

UNKNOWN 0.0

ksmbd: require 3 sub-authorities before reading sub_auth[2]

CVSS Score
0.0
EPSS Score
0.0%
EPSS Percentile
0th

In the Linux kernel, the following vulnerability has been resolved: ksmbd: require 3 sub-authorities before reading sub_auth[2] parse_dacl() compares each ACE SID against sid_unix_NFS_mode and on match reads sid.sub_auth[2] as the file mode. If sid_unix_NFS_mode is the prefix S-1-5-88-3 with num_subauth = 2 then compare_sids() compares only min(num_subauth, 2) sub-authorities so a client SID with num_subauth = 2 and sub_auth = {88, 3} will match. If num_subauth = 2 and the ACE is placed at the very end of the security descriptor, sub_auth[2] will be 4 bytes past end_of_acl. The out-of-band bytes will then be masked to the low 9 bits and applied as the file's POSIX mode, probably not something that is good to have happen. Fix this up by forcing the SID to actually carry a third sub-authority before reading it at all.

Vendor linux
Product linux
Ecosystems
Industries
Technology
Published Apr 24, 2026
Stay Ahead of the Next One

Get instant alerts for linux linux

Be the first to know when new unknown vulnerabilities affecting linux linux are published โ€” delivered to Slack, Telegram or Discord.

Get Free Alerts โ†’ Free ยท No credit card ยท 60 sec setup

Affected Versions

Linux / Linux
1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 < 08f9e6d899b5c834bbcc239eae1bed58d9b15d2c 1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 < d2454f4a002d08560a60f214f392e6491cf11560 1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 < 46bbcd3ebfb3549c8da1838fc4493e79bd3241e7 1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 < 9401f86a224f37b50e6a3ccf1d46a70d5ef8af0a
Linux / Linux
All versions affected

References

NVD โ†— CVE.org โ†— EPSS Data โ†—
git.kernel.org: https://git.kernel.org/stable/c/08f9e6d899b5c834bbcc239eae1bed58d9b15d2c git.kernel.org: https://git.kernel.org/stable/c/d2454f4a002d08560a60f214f392e6491cf11560 git.kernel.org: https://git.kernel.org/stable/c/46bbcd3ebfb3549c8da1838fc4493e79bd3241e7 git.kernel.org: https://git.kernel.org/stable/c/9401f86a224f37b50e6a3ccf1d46a70d5ef8af0a