๐Ÿ” CVE Alert

CVE-2026-98126

UNKNOWN 0.0

smb/client: validate new EOF for zero range

CVSS Score
0.0
EPSS Score
0.0%
EPSS Percentile
0th

In the Linux kernel, the following vulnerability has been resolved: smb/client: validate new EOF for zero range When FALLOC_FL_ZERO_RANGE is used without FALLOC_FL_KEEP_SIZE, smb3_zero_range() may extend EOF without checking RLIMIT_FSIZE, allowing the file to grow beyond the caller's file-size limit. Fix this by calling inode_newsize_ok() before sending the zero-range request when the operation would extend EOF. Reproducer, using a file on a CIFS mount: bash -c ' FILE=/mnt/cifs/repro trap "" SIGXFSZ ulimit -f 3072 truncate -s 2M "$FILE" fallocate --zero-range -o 0 -l 4M "$FILE" echo "fallocate rc=$?" stat -c "file size=%s" "$FILE" ' Before this change, the operation succeeds despite the 3 MiB limit: fallocate rc=0 file size=4194304 After this change, fallocate fails and leaves the file at 2 MiB.

Vendor linux
Product linux
Ecosystems
Industries
Technology
Published Sep 25, 2026
Stay Ahead of the Next One

Get instant alerts for linux linux

Be the first to know when new unknown vulnerabilities affecting linux linux are published โ€” delivered to Slack, Telegram or Discord.

Get Free Alerts โ†’ Free ยท No credit card ยท 60 sec setup

Affected Versions

Linux / Linux
72c419d9b073628d3b5b0b2fc787b724f1a8c726 < 3673f057b64abfa957e8ae84448db69369a5091a 72c419d9b073628d3b5b0b2fc787b724f1a8c726 < 06a4f9049cb6dc319bceec2dc813ba89add8b828 72c419d9b073628d3b5b0b2fc787b724f1a8c726 < f320ca20c273a26cd779bdb2b2e4b076a95c76f6 72c419d9b073628d3b5b0b2fc787b724f1a8c726 < 88972e35750792e717af287dc71f42a03b5cbce4
Linux / Linux
5.1

References

NVD โ†— CVE.org โ†— EPSS Data โ†—
git.kernel.org: https://git.kernel.org/stable/c/3673f057b64abfa957e8ae84448db69369a5091a git.kernel.org: https://git.kernel.org/stable/c/06a4f9049cb6dc319bceec2dc813ba89add8b828 git.kernel.org: https://git.kernel.org/stable/c/f320ca20c273a26cd779bdb2b2e4b076a95c76f6 git.kernel.org: https://git.kernel.org/stable/c/88972e35750792e717af287dc71f42a03b5cbce4