PT-2026-94512 · Linux · Linux Kernel

CVE-2026-90164

·

Published

2026-09-17

·

Updated

2026-09-24

None

No severity ratings or metrics are available. When they are, we'll update the corresponding info on the page.
Name of the Vulnerable Software and Affected Versions Linux kernel (affected versions not specified)
Description An issue exists in the SMB server where ksmbd server init() calls ksmbd proc init() before creating other server subsystems. If a procfs or percpu counter allocation failure occurs, ksmbd proc init() tears down the partial state but returns void, causing ksmbd server init() to proceed as if the counters were functional. Subsequently, when userspace starts the server, server ctrl handle init() invokes ksmbd proc reset(), which leads to percpu counter set() being called with a NULL per-CPU counters pointer on SMP (Symmetric Multiprocessing) systems. Additionally, subsequent ksmbd proc create() calls may receive a NULL parent and create entries in the /proc root, which ksmbd proc cleanup() cannot remove because ksmbd proc fs is NULL.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Exploit

Found an issue in the description? Have something to add? Feel free to write us 👾

Related Identifiers

CVE-2026-90164
OPENSUSE-SU-2026:11880-1

Affected Products

Linux Kernel