Critical severity9.1NVD Advisory· Published Feb 23, 2024· Updated Aug 4, 2026
CVE-2024-26594
CVE-2024-26594
Description
In the Linux kernel, the following vulnerability has been resolved:
ksmbd: validate mech token in session setup
If client send invalid mech token in session setup request, ksmbd validate and make the error if it is invalid.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
9- osv-coords5 versionspkg:linux/kernelpkg:deb/ubuntu/linux-oem-6.5pkg:deb/ubuntu/[email protected]?arch=source&distro=manticpkg:deb/ubuntu/[email protected]?arch=source&distro=manticpkg:deb/ubuntu/[email protected]?arch=source&distro=mantic
>= 5.15.0, < 5.15.149+ 4 more
- (no CPE)range: >= 5.15.0, < 5.15.149
- (no CPE)range: < 6.5.0-1022.23
- (no CPE)range: < 6.5.0-1017.20
- (no CPE)range: < 6.5.0-1021.21
- (no CPE)range: < 6.5.0-1024.24
Patches
Vulnerability mechanics
References
5- git.kernel.org/stable/c/5e6dfec95833edc54c48605a98365a7325e5541envdPatch
- git.kernel.org/stable/c/6eb8015492bcc84e40646390e50a862b2c0529c9nvdPatch
- git.kernel.org/stable/c/92e470163d96df8db6c4fa0f484e4a229edb903dnvdPatch
- git.kernel.org/stable/c/a2b21ef1ea4cf632d19b3a7cc4d4245b8e63202anvdPatch
- git.kernel.org/stable/c/dd1de9268745f0eac83a430db7afc32cbd62e84bnvdPatch
News mentions
0No linked articles in our index yet.