๐Ÿ” CVE Alert

CVE-2026-64298

UNKNOWN 0.0

NFSv4: include MAY_WRITE in open permission mask for O_TRUNC

CVSS Score
0.0
EPSS Score
0.0%
EPSS Percentile
0th

In the Linux kernel, the following vulnerability has been resolved: NFSv4: include MAY_WRITE in open permission mask for O_TRUNC POSIX requires write permission to truncate a file, so an open() that specifies O_TRUNC must be authorized for write access regardless of the O_ACCMODE access mode. nfs_open_permission_mask() builds the access mask passed to nfs_may_open(), which is the local authorization gate for OPENs the client serves itself from a cached write delegation via the can_open_delegated() path in nfs4_try_open_cached(). The mask is derived from O_ACCMODE alone, so an open(O_RDONLY | O_TRUNC) against a file the caller cannot write requests only MAY_READ and passes the local check. The OPEN is then satisfied locally and the truncation is issued to the server as a SETATTR(size=0) over the delegation stateid, which the server accepts under standard write-delegation semantics. POSIX requires that this open fail with EACCES. Include MAY_WRITE in the mask whenever O_TRUNC is set so the local check matches the access the server would have enforced.

Vendor linux
Product linux
Ecosystems
Industries
Technology
Published Jul 25, 2026
Stay Ahead of the Next One

Get instant alerts for linux linux

Be the first to know when new unknown vulnerabilities affecting linux linux are published โ€” delivered to Slack, Telegram or Discord.

Get Free Alerts โ†’ Free ยท No credit card ยท 60 sec setup

Affected Versions

Linux / Linux
af22f94ae02ab9dd4fd7fe628c8434a59cc293be < 4817c8974315b666e895b7d1bb83cd3664c323b1 af22f94ae02ab9dd4fd7fe628c8434a59cc293be < cb148a2762d644bff1894728e8835a9a4b84f9ea af22f94ae02ab9dd4fd7fe628c8434a59cc293be < 30fdf4df6c3c00efec947e4ddf97f0fdd4473628 af22f94ae02ab9dd4fd7fe628c8434a59cc293be < 22c1fd1355ad4ca27aa7f0fa02719122dd92d9de af22f94ae02ab9dd4fd7fe628c8434a59cc293be < 6bd7d0a06b53c4e797e1a9cea0d2d41aa1b26230 af22f94ae02ab9dd4fd7fe628c8434a59cc293be < a937e92c1d00534b5c2e3e9f4381b7e988180797 af22f94ae02ab9dd4fd7fe628c8434a59cc293be < e36501b7d4abdcd6d69a7cb901b2f286b7a3d041 af22f94ae02ab9dd4fd7fe628c8434a59cc293be < 5140f099ecd8a2f2808b7f7b720ee1bad8468974
Linux / Linux
2.6.24

References

NVD โ†— CVE.org โ†— EPSS Data โ†—
git.kernel.org: https://git.kernel.org/stable/c/4817c8974315b666e895b7d1bb83cd3664c323b1 git.kernel.org: https://git.kernel.org/stable/c/cb148a2762d644bff1894728e8835a9a4b84f9ea git.kernel.org: https://git.kernel.org/stable/c/30fdf4df6c3c00efec947e4ddf97f0fdd4473628 git.kernel.org: https://git.kernel.org/stable/c/22c1fd1355ad4ca27aa7f0fa02719122dd92d9de git.kernel.org: https://git.kernel.org/stable/c/6bd7d0a06b53c4e797e1a9cea0d2d41aa1b26230 git.kernel.org: https://git.kernel.org/stable/c/a937e92c1d00534b5c2e3e9f4381b7e988180797 git.kernel.org: https://git.kernel.org/stable/c/e36501b7d4abdcd6d69a7cb901b2f286b7a3d041 git.kernel.org: https://git.kernel.org/stable/c/5140f099ecd8a2f2808b7f7b720ee1bad8468974