CVE-2026-74592

Unknown

Last modified

CVE-2026-74592 is a vulnerability of currently unknown severity. In the Linux kernel, the following vulnerability has been resolved: ima: Instantiate file_truncate and path_truncate hooks Instantiate the file_truncate and path_truncate LSM hooks to reset the action cache flags (IMA_DONE_MASK) as soon as truncation is requested, so the file, based on policy, is re-collected, re-measured, re-audited, and re-appraised on next access..

Description

In the Linux kernel, the following vulnerability has been resolved: ima: Instantiate file_truncate and path_truncate hooks Instantiate the file_truncate and path_truncate LSM hooks to reset the action cache flags (IMA_DONE_MASK) as soon as truncation is requested, so the file, based on policy, is re-collected, re-measured, re-audited, and re-appraised on next access.

Affected Software

Source: CNA advisory (CVE.org). NVD analysis pending.

VendorProductVersions
LinuxLinux>= 1da177e4c3f41524e886b7f1b8a0c1fc7321cac2, < 5f46705d96eb60587aa7035acfcbec977e08d620; >= 1da177e4c3f41524e886b7f1b8a0c1fc7321cac2, < dd21c96a71e876c8df9ec546b885a2c5f47bbb05; >= 1da177e4c3f41524e886b7f1b8a0c1fc7321cac2, < 0baed1fa2184c81e4baf76f445d3faa4b738c8f7; >= 1da177e4c3f41524e886b7f1b8a0c1fc7321cac2, < b80bed5c871a80151351342c065579405ce77145; < 6.12.104; < 6.18.45; < 7.1.9
LinuxLinuxAll versions

References

Timeline

Published
Last Modified
Status
Received

Frequently Asked Questions

What is CVE-2026-74592?
In the Linux kernel, the following vulnerability has been resolved: ima: Instantiate file_truncate and path_truncate hooks Instantiate the file_truncate and path_truncate LSM hooks to reset the action cache flags (IMA_DONE_MASK) as soon as truncation is requested, so the file, based on policy, is re-collected, re-measured, re-audited, and re-appraised on next access.
How severe is CVE-2026-74592?
Severity scoring for CVE-2026-74592 is pending analysis.
How do I fix CVE-2026-74592?
Check the vendor references and advisories linked above for patched versions and mitigation guidance. You can also run a Strix scan to test if your systems are affected.

How Strix Helps

Related CVEs from 2026

Are you affected by CVE-2026-74592?

Run a free Strix scan to check your systems for this vulnerability.

Scan your code now

Source: NVD / NIST