PT-2026-94504 · Linux · Linux Kernel

CVE-2026-90156

·

Published

2026-09-17

·

Updated

2026-09-24

None

No severity ratings or metrics are available. When they are, we'll update the corresponding info on the page.
Name of the Vulnerable Software and Affected Versions Linux kernel (affected versions not specified)
Description An issue exists in the ksmbd module where smb2 lock() adds a ksmbd lock to the rollback list before the asynchronous work is allocated and registered. If these operations fail, the rollback process attempts to dereference a NULL pointer by assuming smb lock->conn is initialized. Additionally, the deferred file lock remains linked to the VFS blocked-lock state during its release.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Exploit

Found an issue in the description? Have something to add? Feel free to write us 👾

Related Identifiers

AZL-102651
CVE-2026-90156
OPENSUSE-SU-2026:11880-1

Affected Products

Linux Kernel