Critical severity9.8NVD Advisory· Published Jul 25, 2026· Updated Aug 17, 2026
CVE-2026-64391
CVE-2026-64391
Description
In the Linux kernel, the following vulnerability has been resolved:
ksmbd: use opener credentials for ADS I/O
Alternate data streams are stored as xattrs. Unlike regular file I/O, their read and write paths therefore call VFS xattr helpers which recheck inode permissions and LSM policy using the current task credentials.
Run ADS I/O with the credentials captured when the SMB handle was opened.
Affected products
3- osv-coords2 versions
< 7.1.7-1.1+ 1 more
- (no CPE)range: < 7.1.7-1.1
- (no CPE)range: >= 5.15.0, < 6.12.96
Patches
Vulnerability mechanics
References
4News mentions
0No linked articles in our index yet.