CVE-2026-31444

medium Red Hat
Published: April 22, 2026 (22 days ago)
Last Modified: April 22, 2026
Vendor: Red Hat
Source: REDHAT

Description

A flaw was found in ksmbd, a component of the Linux kernel. This vulnerability involves a use-after-free and a NULL pointer dereference within the `smb_grant_oplock()` function during the oplock publication sequence. An attacker could potentially exploit these issues, leading to memory corruption. This could result in a denial of service (DoS) due to system instability or crashes.

CWE

CWE-476

Affected Products

Red Hat Enterprise Linux 10Red Hat Enterprise Linux 6Red Hat Enterprise Linux 7Red Hat Enterprise Linux 8Red Hat Enterprise Linux 9

References