PT-2026-106503 · Linux · Linux

CVE-2026-98174

·

Published

2026-10-06

·

Updated

2026-10-06

None

No severity ratings or metrics are available. When they are, we'll update the corresponding info on the page.
In the Linux kernel, the following vulnerability has been resolved:
smb: client: fix rlist race and missing initialization
TCP Server Info.rlist is allocated via kzalloc which zeros both ->next and ->prev to NULL instead of pointing to itself, making list empty() always return false and list add() dereference a NULL ->prev pointer.
Also, cifs signal cifsd for reconnect() can be called concurrently from multiple cifsd threads, allowing the same server's rlist node to be added twice into the local list, corrupting it.
Found an issue in the description? Have something to add? Feel free to write us 👾

Related Identifiers

CVE-2026-98174

Affected Products

Linux