CVE-2026-31433Disclosure(linux / linux_kernel)

LOWCVSS 8.8 · HIGH

Signal is active with 4 mentions in latest observed window

Immediate actions

  • Patch linux linux_kernel systems immediately

Recommended action window: Monitor and triage in normal cycle

NVD description

In the Linux kernel, the following vulnerability has been resolved: ksmbd: fix potencial OOB in get_file_all_info() for compound requests When a compound request consists of QUERY_DIRECTORY + QUERY_INFO (FILE_ALL_INFORMATION) and the first command consumes nearly the entire max_trans_size, get_file_all_info() would blindly call smbConvertToUTF16() with PATH_MAX, causing out-of-bounds write beyond the response buffer. In get_file_all_info(), there was a missing validation check for the client-provided OutputBufferLength before copying the filename into FileName field of the smb2_file_all_info structure. If the filename length exceeds the available buffer space, it could lead to potential buffer overflows or memory corruption during smbConvertToUTF16 conversion. This calculating the actual free buffer size using smb2_calc_max_out_buf_len() and returning -EINVAL if the buffer is insufficient and updating smbConvertToUTF16 to use the actual filename length (clamped by PATH_MAX) to ensure a safe copy operation.

0.5/ 10 priority

Sources & remediation

Weakness type (CWE)
CWE-125

Priority

LOW

Exploitation

NONE

PoC

NONE

Patch

AVAILABLE

Momentum

NONE

Are you affected?

If you run products in this scope, you should treat this CVE as relevant to your environment.

  • linux_kernel

Threat summary

  • Patch or workaround signal is available
  • 4 mentions across 1 observed day

What's happening

  • Patch or workaround mentioned in 2 signals
  • Technical details provided in 3 signals
  • Disclosure: 3 classified signals
  • 4 total mentions across 1 day

Affected systems

Vendors
Products
linux_kernel

1 version affected across 1 product

Deep dive

Activity timeline4 mentions / 1d
01234Mentions · 2026-04-22: 4Patch / Workaround · 2026-04-22: 2Technical Details · 2026-04-22: 304-22
Signal classification2 categories
Disclosure
375.0%
Patch
125.0%
Referenced assets4 URLs
Full discourse4 posts
  • Infoflowcloud@infoflowcloud
    Patch

    🚨*CVE* CVE-2026-31433 In the Linux kernel, the following vulnerability has been resolved: ksmbd: fix potencial OOB in get_file_all_info() for compound requests When a compound request co… https://www.cve.org/CVERecord?id=CVE-2026-31433 ----- Traducción: CVE-2026-31433 En … http://infoflow.cloud`

    Post summary

    The tweet announces that CVE-2026-31433, an out‑of‑bounds issue in the Linux kernel's ksmbd get_file_all_info() handling, has been patched; no PoC or exploit details are shared.

    0000036
    72 followersView on X
  • CVE@CVEnew
    Disclosure

    CVE-2026-31433 In the Linux kernel, the following vulnerability has been resolved: ksmbd: fix potencial OOB in get_file_all_info() for compound requests When a compound request co… https://www.cve.org/CVERecord?id=CVE-2026-31433

    Post summary

    The announcement confirms that CVE-2026-31433, an OOB vulnerability in the Linux kernel’s ksmbd get_file_all_info() function, has been patched; no exploitation evidence or PoC is provided.

    00000232
    57.2K followersView on X
  • Vulmon Vulnerability Feed@VulmonFeeds
    Disclosure

    CVE-2026-31433 Out-of-Bounds Write in Linux Kernel ksmbd get_file_all_info() Function https://vulmon.com/vulnerabilitydetails?qid=CVE-2026-31433

    Post summary

    CVE-2026-31433 is disclosed as an out-of-bounds write issue in the Linux kernel's ksmbd get_file_all_info() function, but no PoC, exploit, active exploitation, patch, or debunking information is provided.

    0000048
    4.0K followersView on X
  • VulDB 🛡@vuldb
    Disclosure

    A severe vulnerability was disclosed for Linux Kernel (CVE-2026-31433) https://vuldb.com/vuln/358788

    Post summary

    The text announces a newly disclosed severe vulnerability in the Linux Kernel (CVE-2026-31433) and points to a external page for further details.

    0000067
    2.1K followersView on X
CPE platform detail6 entries

6 of 6 entries

PartVendorProductVersionTarget SWTarget HW
OSlinuxlinux_kernel---
OSlinuxlinux_kernel7.0--
OSlinuxlinux_kernel7.0--
OSlinuxlinux_kernel7.0--
OSlinuxlinux_kernel7.0--
OSlinuxlinux_kernel7.0--

Explore more