Linux Kernel Vulnerability Affecting Volume UUID in KSMBD Functionality
CVE-2026-31410

Currently unrated

Key Information:

Vendor

Linux

Status
Vendor
CVE Published:
6 April 2026

What is CVE-2026-31410?

The Linux kernel has a vulnerability in its ksmbd module where it improperly retrieves volume identifiers. The module should primarily use the volume UUID to ensure accurate identification. In cases where a UUID is unavailable, the system can utilize an alternative identifier obtained from vfs_statfs(). This flaw could potentially lead to issues in file system operations and data integrity, necessitating prompt updates to mitigate risks.

Affected Version(s)

Linux 1da177e4c3f41524e886b7f1b8a0c1fc7321cac2

Linux 1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 < 3d80ebe6d1b7bc9ad20fd9b0c1a0c56d804f8a0a

Linux 1da177e4c3f41524e886b7f1b8a0c1fc7321cac2

References

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.