{"id":"CVE-2026-93812","published":"2026-09-24T17:17:14.657","lastModified":"2026-09-25T13:17:22.053","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nksmbd: fix sd_ndr.data memory leak in ksmbd_vfs_set_sd_xattr\n\nndr_encode_v4_ntacl() allocates sd_ndr.data via kzalloc() at entry.\nIf any subsequent ndr_write_*() call returns error during encoding,\nthe allocated sd_ndr.data won't be freed and causes memory leak.\n\nMove kfree(sd_ndr.data) into out label to ensure the buffer gets\nreleased on all success and error return paths.","cvssScore":null,"cvssSeverity":null,"cvssVector":null,"cwes":[],"vendors":[],"products":[],"references":[{"url":"https://git.kernel.org/stable/c/9b4dec75498fd0a1c9eaea680aef59c9519eb16f","tags":[]},{"url":"https://git.kernel.org/stable/c/c521dd78e036b5e0cfd394dd2ff2218890dd9e41","tags":[]},{"url":"https://git.kernel.org/stable/c/d4d56b00c7df88cd5751e7415bdfabc9fdbc82a7","tags":[]}],"exploitRefs":[],"hasPoc":false,"ai":null}