CVE-2026-64136
Critical · CVSS 9.8- CVSS
- 9.8
- nvd
- EPSS
- 0.49%
- 40th pct
- KEV
- No
- Class
- oss containerizable
- NVD-CWE-noinfo
Description
In the Linux kernel, the following vulnerability has been resolved: smb: client: protect tc_count increment in smb2_find_smb_sess_tcon_unlocked() Commit 96c4af418586 ("cifs: Fix locking usage for tcon fields") refactored cifs code to change cifs_tcp_ses_lock for tc_lock around tc_count changes. There was missing lock around tc_count increment inside smb2_find_smb_sess_tcon_unlocked().
Affected packages
| Linux | Kernel | 0 → 6.6.142 |
| Linux | Kernel | 6.13.0 → 6.18.34 |
| Linux | Kernel | 6.19.0 → 7.0.11 |
| Linux | Kernel | 6.7.0 → 6.12.92 |
References
- https://git.kernel.org/stable/c/13fb413ae22a37c69341918a6d651d19a9b0b9b7
- https://git.kernel.org/stable/c/4d8690dace005a38e6dbde9ecce2da3ad85c7c41
- https://git.kernel.org/stable/c/7df1df6f40c0720d30206aa35c0343b962350e0d
- https://git.kernel.org/stable/c/bf4ebdb19ff9b3cdf992b50715fe61633327416a
- https://git.kernel.org/stable/c/e374f4e496fef8168784f93a4477d67be34485fd
Status: profiled · ingested 2026-07-20T18:00:18.000Z