CVE-2026-46243
In the Linux kernel, the following vulnerability has been resolved: smb: client: reject userspace cifs.spnego descriptions cifs.spnego key descriptions contain authority-bearing fields such as pid, uid, creduid, and upcall_target that cifs.upcall treats as kernel-originating inputs. However, userspace can also create keys of this type through request_key(2) or add_key(2), allowing those fields to be supplied without CIFS origin. Only accept cifs.spnego descriptions while CIFS is using its private spnego_cred to request the key.
- Affected products
- Linuxmint, Linux Kernel, Red Os, Rocky Linux
- Linux Linux Kernel
- < 5.10.258, 5.15.209, 6.1.175, 6.6.142, 6.12.92, 6.18.34, 7.0.11, 2.6.24, 7.1
- Fix
- Available
- CVSS 3.1
- 7.8 HIGH
- EPSS
- 0.4% (31th percentile)
- Weakness
- CWE-825, CWE-20
- NVD status
- Modified
- Published
- 2026-06-01
CVE-2026-46243 at NVD
7 known exploits for CVE-2026-46243
Proof-of-concept code and exploit modules indexed by Sploitus