9.8
/ 10
CRITICAL
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Description
In the Linux kernel, the following vulnerability has been resolved:
smb: server: let send_done handle a completion without IB_SEND_SIGNALED
With smbdirect_send_batch processing we likely have requests without
IB_SEND_SIGNALED, which will be destroyed in the final request
that has IB_SEND_SIGNALED set.
If the connection is broken all requests are signaled
even without explicit IB_SEND_SIGNALED.
smb: server: let send_done handle a completion without IB_SEND_SIGNALED
With smbdirect_send_batch processing we likely have requests without
IB_SEND_SIGNALED, which will be destroyed in the final request
that has IB_SEND_SIGNALED set.
If the connection is broken all requests are signaled
even without explicit IB_SEND_SIGNALED.
AI Analysis
A vulnerability in the Linux kernel's SMB server allows for potential data corruption and disruption of service due to incorrect handling of send requests without IB_SEND_SIGNALED set.
Basic Information
ID
CVE-2026-31536
Source
Linux
Published
Apr 24, 2026 at 14:30
Modified
Apr 27, 2026 at 14:03
Affected Product
Vendor
Linux
Product
Linux
Version
0626e6641f6b467447c81dd7678a69c66f7746cf
Affected Versions
Linux Linux 0626e6641f6b467447c81dd7678a69c66f7746cf
Linux Linux 0626e6641f6b467447c81dd7678a69c66f7746cf
Linux Linux 0626e6641f6b467447c81dd7678a69c66f7746cf
Linux Linux 5.15
Linux Linux 0626e6641f6b467447c81dd7678a69c66f7746cf
Linux Linux 0626e6641f6b467447c81dd7678a69c66f7746cf
Linux Linux 5.15
AI Assessment
AI Score
9.8 / 10
AI Severity
Critical
Vendor
Linux Foundation
Product
Linux Kernel
Version
5.15, 0626e6641f6b467447c81dd7678a69c66f7746cf