CVE-2026-64136
critical · 9.8In the Linux kernel, the following vulnerability has been resolved: smb: client: protect tc_count increment in smb2_find_smb_sess_tcon_unlocked() Commit 96c4af418586 ("cifs: Fix locking usage for tcon fields") refactored cifs code to change cifs_tcp_ses_lock for tc_lock around tc_count changes. There was missing lock around tc_count increment inside smb2_find_smb_sess_tcon_unlocked().
9.8
CVSS
0.5%
EPSS (exploit prob.)
41st
EPSS percentile
2026-07-19
Published
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Affected products
| Vendor | Product | Affected versions |
|---|---|---|
| linux | linux_kernel | >= 6.6.128, < 6.6.142 |
| linux | linux_kernel | >= 6.12.75, < 6.12.92 |
| linux | linux_kernel | >= 6.18.16, < 6.18.34 |
| linux | linux_kernel | >= 6.19.6, < 7.0.11 |
| linux | linux_kernel | 7.1 |
| linux | linux_kernel | 7.1 |
| linux | linux_kernel | 7.1 |
| linux | linux_kernel | 7.1 |
Check a specific version with /api/v1/cve/match.
References
- https://git.kernel.org/stable/c/13fb413ae22a37c69341918a6d651d19a9b0b9b7
- https://git.kernel.org/stable/c/4d8690dace005a38e6dbde9ecce2da3ad85c7c41
- https://git.kernel.org/stable/c/7df1df6f40c0720d30206aa35c0343b962350e0d
- https://git.kernel.org/stable/c/bf4ebdb19ff9b3cdf992b50715fe61633327416a
- https://git.kernel.org/stable/c/e374f4e496fef8168784f93a4477d67be34485fd
Query this programmatically:
curl https://evil-db.io/api/v1/cve/CVE-2026-64136