Unrated severityNVD Advisory· Published Sep 24, 2026
CVE-2026-93812
CVE-2026-93812
Description
In the Linux kernel, the following vulnerability has been resolved:
ksmbd: fix sd_ndr.data memory leak in ksmbd_vfs_set_sd_xattr
ndr_encode_v4_ntacl() allocates sd_ndr.data via kzalloc() at entry. If any subsequent ndr_write_*() call returns error during encoding, the allocated sd_ndr.data won't be freed and causes memory leak.
Move kfree(sd_ndr.data) into out label to ensure the buffer gets released on all success and error return paths.
Affected products
1Patches
Vulnerability mechanics
References
3News mentions
0No linked articles in our index yet.