PT-2026-43839 · Linux · Linux

Published

2026-05-27

·

Updated

2026-05-27

·

CVE-2026-45972

CVSS v3.1

9.8

Critical

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
In the Linux kernel, the following vulnerability has been resolved:
smb: client: fix potential UAF and double free in smb2 open file()
Zero out @err iov and @err buftype before retrying SMB2 open() to prevent an UAF bug if @data != NULL, otherwise a double free.

Fix

Related Identifiers

CVE-2026-45972

Affected Products

Linux