9.8
/ 10
CRITICAL
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Description
In the Linux kernel, the following vulnerability has been resolved:
smb: server: fix use-after-free in smb2_open()
The opinfo pointer obtained via rcu_dereference(fp->f_opinfo) is
dereferenced after rcu_read_unlock(), creating a use-after-free
window.
smb: server: fix use-after-free in smb2_open()
The opinfo pointer obtained via rcu_dereference(fp->f_opinfo) is
dereferenced after rcu_read_unlock(), creating a use-after-free
window.
AI Analysis
Use-after-free vulnerability in the Linux kernel
Basic Information
ID
CVE-2026-43378
Source
Linux
Published
May 8, 2026 at 14:21
Modified
May 20, 2026 at 16:08
Affected Product
Vendor
Linux
Product
Linux
Version
e2f34481b24db2fd634b5edb0a5bd0e4d38cc6e9
Affected Versions
Linux Linux e2f34481b24db2fd634b5edb0a5bd0e4d38cc6e9
Linux Linux e2f34481b24db2fd634b5edb0a5bd0e4d38cc6e9
Linux Linux e2f34481b24db2fd634b5edb0a5bd0e4d38cc6e9
Linux Linux e2f34481b24db2fd634b5edb0a5bd0e4d38cc6e9
Linux Linux e2f34481b24db2fd634b5edb0a5bd0e4d38cc6e9
Linux Linux e2f34481b24db2fd634b5edb0a5bd0e4d38cc6e9
Linux Linux 5.15
Linux Linux e2f34481b24db2fd634b5edb0a5bd0e4d38cc6e9
Linux Linux e2f34481b24db2fd634b5edb0a5bd0e4d38cc6e9
Linux Linux e2f34481b24db2fd634b5edb0a5bd0e4d38cc6e9
Linux Linux e2f34481b24db2fd634b5edb0a5bd0e4d38cc6e9
Linux Linux e2f34481b24db2fd634b5edb0a5bd0e4d38cc6e9
Linux Linux 5.15
AI Assessment
AI Score
9.8 / 10
AI Severity
Critical
Vendor
Linux Foundation
Product
Linux Kernel
Version
5.15
References
- git.kernel.org /stable/c/e1b21e6066615e7d3d3a7aa2677e415e563fd7cc
- git.kernel.org /stable/c/b720c84087cb547f23ce03eab93568c1769e4556
- git.kernel.org /stable/c/54b48ae83de8bb06e65079d96368efe359d4909c
- git.kernel.org /stable/c/8f5b1a7cb009a93c48e9e334a2f59a660f9afc07
- git.kernel.org /stable/c/190e5f808e8058640b408ccfed25440b441a718a
- git.kernel.org /stable/c/1e689a56173827669a35da7cb2a3c78ed5c53680