CVE 9.8 CRITICAL

smb: server: let send_done handle a completion without IB_SEND_SIGNALED_CVE-2026-31536

9.8 / 10
CRITICAL
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

Description

In the Linux kernel, the following vulnerability has been resolved:

smb: server: let send_done handle a completion without IB_SEND_SIGNALED

With smbdirect_send_batch processing we likely have requests without
IB_SEND_SIGNALED, which will be destroyed in the final request
that has IB_SEND_SIGNALED set.

If the connection is broken all requests are signaled
even without explicit IB_SEND_SIGNALED.

AI Analysis

A vulnerability in the Linux kernel's SMB server allows for potential data corruption and disruption of service due to incorrect handling of send requests without IB_SEND_SIGNALED set.

Basic Information

ID CVE-2026-31536
Source Linux
Published Apr 24, 2026 at 14:30
Modified Apr 27, 2026 at 14:03

Affected Product

Vendor Linux
Product Linux
Version 0626e6641f6b467447c81dd7678a69c66f7746cf
Affected Versions Linux Linux 0626e6641f6b467447c81dd7678a69c66f7746cf
Linux Linux 0626e6641f6b467447c81dd7678a69c66f7746cf
Linux Linux 0626e6641f6b467447c81dd7678a69c66f7746cf
Linux Linux 5.15

AI Assessment

AI Score 9.8 / 10
AI Severity Critical
Vendor Linux Foundation
Product Linux Kernel
Version 5.15, 0626e6641f6b467447c81dd7678a69c66f7746cf

References

💭 Join the Security Discussion

🔒 Your email address will not be published. Required fields are marked *

⚠️ Please be respectful and constructive in your comments. Security discussions should remain professional.