{"id":"CVE-2026-89792","published":"2026-09-16T09:17:10.040","lastModified":"2026-09-21T14:17:26.597","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nksmbd: prevent out-of-bounds reads in share config responses\n\nValidate IPC share configuration payload sizes before consuming\nvariable-length fields. Bound veto list parsing and account for\nthe separator byte when deriving the path length.","cvssScore":7.1,"cvssSeverity":"HIGH","cvssVector":"CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:H","cwes":[],"vendors":[],"products":[],"references":[{"url":"https://git.kernel.org/stable/c/61a8d06600c8c397f9a7e01940479d4c94a82f5f","tags":[]},{"url":"https://git.kernel.org/stable/c/cd2bcee450bc94770be56c0b896c1a1dc6838bd8","tags":[]},{"url":"https://git.kernel.org/stable/c/f25e93768fcc5d8287e50b1ec52a42e4c276df34","tags":[]},{"url":"https://git.kernel.org/stable/c/ffa507f5f774cb4d45136b106989ebc051361263","tags":[]}],"exploitRefs":[],"hasPoc":false,"ai":null}