CVE-2026-90174 | Linux Kernel up to 7.2.5 ksmbd ksmbd_alloc_user hash_sz out-of-bounds

SecurityVulns

A vulnerability labeled as critical has been found in Linux Kernel up to 7.2.5. Affected by this issue is the function ksmbd_alloc_user of the component ksmbd. Such manipulation of the argument hash_sz leads to out-of-bounds read.

This vulnerability is uniquely identified as CVE-2026-90174. The attack can be launched remotely. No exploit exists.

The affected component should be upgraded.VulDB Recent EntriesRead More