๐Ÿ” CVE Alert

CVE-2026-98168

UNKNOWN 0.0

smb: client: fix reparse buffer bounds in cifs_query_reparse_point()

CVSS Score
0.0
EPSS Score
0.0%
EPSS Percentile
0th

In the Linux kernel, the following vulnerability has been resolved: smb: client: fix reparse buffer bounds in cifs_query_reparse_point() In cifs_query_reparse_point(), the start >= end check before casting to struct reparse_data_buffer * only ensures the start pointer is within the response. It fails to verify that there is enough space remaining for the fixed 8-byte header of the structure. If a server provides a DataOffset that leaves less than 8 bytes remaining, the check passes, but subsequent reads of ReparseTag and ReparseDataLength will occur out-of-bounds. Fix this by ensuring the remaining space is at least the size of the reparse_data_buffer structure before accessing its fields.

Vendor linux
Product linux
Ecosystems
Industries
Technology
Published Oct 6, 2026
Stay Ahead of the Next One

Get instant alerts for linux linux

Be the first to know when new unknown vulnerabilities affecting linux linux are published โ€” delivered to Slack, Telegram or Discord.

Get Free Alerts โ†’ Free ยท No credit card ยท 60 sec setup

Affected Versions

Linux / Linux
48ca7139ab7f0bbed95ff7a901ea497017769657 < 3d67f155fe5813cfb02a551a9a12d6ea06a902e9 56e84c64fc257a95728ee73165456b025c48d408 < d1152c96a3002e3df6b9a5b007cecaa7b19b4f79 56e84c64fc257a95728ee73165456b025c48d408 < 8dc5db3a0e583ea8d31d0613cefd99e93e095c3c 56e84c64fc257a95728ee73165456b025c48d408 < 5f0306e731e2f46e91419eae57eee3a241c055e0 848d78e3625f15de09d34a562dc49a98b78a62f3 c13b779d26b3702fba8f7d5fe757aba5bda85fd0 6.12.34 < 6.12.112 6.6.94 < 6.7 6.15.3 < 6.16
Linux / Linux
6.16

References

NVD โ†— CVE.org โ†— EPSS Data โ†—
git.kernel.org: https://git.kernel.org/stable/c/3d67f155fe5813cfb02a551a9a12d6ea06a902e9 git.kernel.org: https://git.kernel.org/stable/c/d1152c96a3002e3df6b9a5b007cecaa7b19b4f79 git.kernel.org: https://git.kernel.org/stable/c/8dc5db3a0e583ea8d31d0613cefd99e93e095c3c git.kernel.org: https://git.kernel.org/stable/c/5f0306e731e2f46e91419eae57eee3a241c055e0