๐Ÿ” CVE Alert

CVE-2026-46024

HIGH 7.5

libceph: Prevent potential null-ptr-deref in ceph_handle_auth_reply()

CVSS Score
7.5
EPSS Score
0.0%
EPSS Percentile
0th

In the Linux kernel, the following vulnerability has been resolved: libceph: Prevent potential null-ptr-deref in ceph_handle_auth_reply() If a message of type CEPH_MSG_AUTH_REPLY contains a zero value for both protocol and result, this is currently not treated as an error. In case of ac->negotiating == true and ac->protocol > 0, this leads to setting ac->protocol = 0 and ac->ops = NULL. Thereafter, the check for ac->protocol != protocol returns false, and init_protocol() is not called. Subsequently, ac->ops->handle_reply() is called, which leads to a null pointer dereference, because ac->ops is still NULL. This patch changes the check for ac->protocol != protocol to !ac->protocol, as this also includes the case when the protocol was set to zero in the message. This causes the message to be treated as containing a bad auth protocol.

Vendor linux
Product linux
Ecosystems
Industries
Technology
Published May 27, 2026
Last Updated Jun 1, 2026
Stay Ahead of the Next One

Get instant alerts for linux linux

Be the first to know when new high vulnerabilities affecting linux linux are published โ€” delivered to Slack, Telegram or Discord.

Get Free Alerts โ†’ Free ยท No credit card ยท 60 sec setup

CVSS v3 Breakdown

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
Attack Vector
Attack Complexity
Privileges Required
User Interaction
Scope
Confidentiality
Integrity
Availability

Affected Versions

Linux / Linux
4e7a5dcd1bbab6560fbc8ada29a840e7a20ed7bc < 9ded62c302c0342efdb5eda3bf6e75720caad0df 4e7a5dcd1bbab6560fbc8ada29a840e7a20ed7bc < f101271fcf55d7eacfefd610b51ec65f46ba8118 4e7a5dcd1bbab6560fbc8ada29a840e7a20ed7bc < 4b2738b93edad661178340239de657d876b73d3d 4e7a5dcd1bbab6560fbc8ada29a840e7a20ed7bc < 927e4bd5692f2a4901808822981fb2c8d4456548 4e7a5dcd1bbab6560fbc8ada29a840e7a20ed7bc < 016bc663657366d386993f63eb31072eb45a2b77 4e7a5dcd1bbab6560fbc8ada29a840e7a20ed7bc < 8f2be7285941a33a9f72579a23b96392f83c758e 4e7a5dcd1bbab6560fbc8ada29a840e7a20ed7bc < 5199c125d25aeae8615c4fc31652cc0fe624338e
Linux / Linux
2.6.34

References

NVD โ†— CVE.org โ†— EPSS Data โ†—
git.kernel.org: https://git.kernel.org/stable/c/9ded62c302c0342efdb5eda3bf6e75720caad0df git.kernel.org: https://git.kernel.org/stable/c/f101271fcf55d7eacfefd610b51ec65f46ba8118 git.kernel.org: https://git.kernel.org/stable/c/4b2738b93edad661178340239de657d876b73d3d git.kernel.org: https://git.kernel.org/stable/c/927e4bd5692f2a4901808822981fb2c8d4456548 git.kernel.org: https://git.kernel.org/stable/c/016bc663657366d386993f63eb31072eb45a2b77 git.kernel.org: https://git.kernel.org/stable/c/8f2be7285941a33a9f72579a23b96392f83c758e git.kernel.org: https://git.kernel.org/stable/c/5199c125d25aeae8615c4fc31652cc0fe624338e