CVE-2026-31477
mediumPublished: April 22, 2026 (22 days ago)
Last Modified: April 22, 2026
Vendor: Red Hat
Source: REDHAT
Vulnerability Report
Generated by CyberWatcher
Description
A flaw was found in ksmbd in the Linux kernel. Error handling issues within the `smb2_lock()` function can lead to memory leaks. Additionally, an allocation failure in `smb_flock_init()` can result in a NULL pointer dereference, causing the kernel to crash. This vulnerability could allow a local attacker to cause a Denial of Service (DoS) by triggering these error conditions.
CWE
CWE-476Affected Products
Red Hat Enterprise Linux 10Red Hat Enterprise Linux 6Red Hat Enterprise Linux 7Red Hat Enterprise Linux 8Red Hat Enterprise Linux 9