CVE-2026-93801

HIGHCVSS 7/10

Last modified

CVE-2026-93801 is a high-severity vulnerability rated 7/10 on the CVSS scale. In the Linux kernel, the following vulnerability has been resolved: smb/client: zero-initialize stack-allocated cifs_open_info_data Stack-allocated cifs_open_info_data may contain random data. This can make some fields have wrong value if they are not set later..

Description

In the Linux kernel, the following vulnerability has been resolved: smb/client: zero-initialize stack-allocated cifs_open_info_data Stack-allocated cifs_open_info_data may contain random data. This can make some fields have wrong value if they are not set later.

Metrics

Affected Software

Source: CNA advisory (CVE.org). NVD analysis pending.

VendorProductVersions
LinuxLinux>= fc2f2011d3d84b56f536b4a25a4bb2fa1b13d520, < 74ff47e6c4213fcfeba2de448d9cbda200507d22; >= 057ac50638bcece64b3b436d3a61b70ed6c01a34, < 22532dd88694ed20bdd47523ffa709f166ce776b; >= 057ac50638bcece64b3b436d3a61b70ed6c01a34, < 8fce4cf4369c766a3293a05419500cbfde72e60d; 436cfdbc57d98808fce427d9a8d97691374989b3; 83d3bc866530a36a465b47cce4d2a9def2411960; >= 6.12.54, < 6.12.111; >= 6.6.113, < 6.7; >= 6.17.4, < 6.18
LinuxLinux6.18

References

Timeline

Published
Last Modified
Status
Received

Frequently Asked Questions

What is CVE-2026-93801?
In the Linux kernel, the following vulnerability has been resolved: smb/client: zero-initialize stack-allocated cifs_open_info_data Stack-allocated cifs_open_info_data may contain random data. This can make some fields have wrong value if they are not set later.
How severe is CVE-2026-93801?
CVE-2026-93801 has a CVSS score of 7/10 (HIGH severity).
How do I fix CVE-2026-93801?
Check the vendor references and advisories linked above for patched versions and mitigation guidance. You can also run a Strix scan to test if your systems are affected.

How Strix Helps

Related CVEs from 2026

Are you affected by CVE-2026-93801?

Run a free Strix scan to check your systems for this vulnerability.

Scan your code now

Source: NVD / NIST