Tree Connection Leak in Linux Kernel Affecting SMB Server
CVE-2026-98162

Currently unrated

Key Information:

Vendor

Linux

Status
Vendor
CVE Published:
25 September 2026

What is CVE-2026-98162?

The Linux kernel's SMB server has a vulnerability that results in a leak of tree connections. Specifically, the issue arises within the smb2_tree_connect() function where a failure to disconnect a new tree connection occurs if the ksmbd_iov_pin_rsp() function fails. This leak can lead to resource exhaustion and affect server performance, necessitating a patch to ensure proper management and disconnection of tree connections.

Affected Version(s)

Linux e2b76ab8b5c9327ab2dae6da05d0752eb2f4771d

Linux e2b76ab8b5c9327ab2dae6da05d0752eb2f4771d < 39f2032096715daae5f6fd0f587ca7a474b019df

Linux f2283680a80571ca82d710bc6ecd8f8beac67d63

References

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.