Linux Kernel SMB Client Stale Data Vulnerability
CVE-2026-98125

Currently unrated

Key Information:

Vendor

Linux

Status
Vendor
CVE Published:
25 September 2026

What is CVE-2026-98125?

In the Linux kernel, a vulnerability exists within the SMB client that leads to the exposure of stale data due to improper handling of the page cache during insert or collapse range operations. When the parameters off or old_eof are not page-aligned, boundary pages may only be partially zeroed, preventing the complete invalidation of the page cache. Consequently, this flawed handling can result in a client returning outdated data after operations intended to update the cache. Users of affected Linux kernel versions are advised to update to resolve this issue and ensure data integrity.

Affected Version(s)

Linux fa30a81f255a56cccd89552cd6ce7ea6e8d8acc4 < 76222e76d08fbae4092ee9da84ded2b4c24ee598

Linux fa30a81f255a56cccd89552cd6ce7ea6e8d8acc4 < 01261a6fa48b62f5ead8e88aaca1e27cb9ab9032

Linux 49523a4732204bdacbf3941a016503ddb4ddb3b9

References

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.