VYPR
Critical severity9.8NVD Advisory· Published Aug 6, 2026· Updated Aug 17, 2026

CVE-2026-64597

CVE-2026-64597

Description

In the Linux kernel, the following vulnerability has been resolved:

smb: client: fix double-free in SMB2_close() replay

A response-bearing attempt can return a replayable error and free its response buffer. If SMB2_close_init() fails before the next send, cleanup retains the previous buffer type and frees that response again.

Reset response bookkeeping before each attempt to prevent the stale free.

Affected products

77

Patches

Vulnerability mechanics

References

5

News mentions

1