目標達成 すべての支援者に感謝 — 100%達成しました!

目標: 1000 CNY · 調達済み: 1336 CNY

100%

CVE-2026-64597— Linux kernel 安全漏洞

CVSS 9.8 · Critical EPSS 0.36% · P29

Possible ATT&CK Techniques 1AI

T1499 · Endpoint Denial of Service

Affected Version Matrix 13

ベンダープロダクトVersion Rangeステータス
LinuxLinux433042a91f9373241307725b52de573933ffedbf< 037511726228aaf165c7067ff2bfc88eaecdf1f3affected
4f1fffa2376922f3d1d506e49c0fd445b023a28e< 0aa97edf7c347c0f54e7e60c4740574b8120c66aaffected
4f1fffa2376922f3d1d506e49c0fd445b023a28e< d15d83125007f673aec4323e1bbbaaffbe87ea13affected
4f1fffa2376922f3d1d506e49c0fd445b023a28e< b18ed621dbfceecea5539848cddcb9272c9a61e1affected
4f1fffa2376922f3d1d506e49c0fd445b023a28e< f96e1cdcb63ed3321142ff2fcdf784e32cda8feeaffected
6.6.32< 6.6.145affected
6.8affected
< 6.8unaffected
… +5 more rows
新しい脆弱性情報の通知を購読するログインして購読

I. CVE-2026-64597の基本情報

脆弱性情報

脆弱性についてご質問がありますか?Shenlongの分析が参考になるかご確認ください!
Shenlongの10の質問を表示 ↗

高度な大規模言語モデル技術を使用していますが、出力には不正確または古い情報が含まれる可能性があります。Shenlongはデータの正確性を確保するよう努めていますが、実際の状況に基づいて検証・判断してください。

脆弱性タイトル
smb: client: fix double-free in SMB2_close() replay
ソース: CVE Program / CVE List V5
脆弱性説明
In the Linux kernel, the following vulnerability has been resolved: smb: client: fix double-free in SMB2_close() replay A response-bearing attempt can return a replayable error and free its response buffer. If SMB2_close_init() fails before the next send, cleanup retains the previous buffer type and frees that response again. Reset response bookkeeping before each attempt to prevent the stale free.
ソース: CVE Program / CVE List V5
CVSS情報
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
ソース: CVE Program / CVE List V5
脆弱性タイプ
N/A
ソース: CVE Program / CVE List V5
脆弱性タイトル
Linux kernel 安全漏洞
ソース: CNNVD (China National Vulnerability Database)
脆弱性説明
Linux kernel是美国Linux基金会开源的一款操作系统内核。 Linux kernel存在安全漏洞,该漏洞源于SMB2_close()重放过程中响应缓冲区被重复释放。
ソース: CNNVD (China National Vulnerability Database)
CVSS情報
N/A
ソース: CNNVD (China National Vulnerability Database)
脆弱性タイプ
N/A
ソース: CNNVD (China National Vulnerability Database)

影響を受ける製品

ベンダープロダクト影響を受けるバージョンCPE購読
LinuxLinux 433042a91f9373241307725b52de573933ffedbf ~ 037511726228aaf165c7067ff2bfc88eaecdf1f3 -
LinuxLinux 6.8 -

II. CVE-2026-64597の公開POC

#POC説明ソースリンクShenlongリンク
AI生成POCプレミアム

公開POCは見つかりませんでした。

ログインしてAI POCを生成

III. CVE-2026-64597のインテリジェンス情報

登录查看更多情报信息。

CVE-2026-64597 补丁与修复 (5)

Same Patch Batch · Linux · 2026-08-06 · 22 CVEs total

CVE-2026-645868.8 HIGHwifi: brcmfmac: drain bus_reset work on device removal
CVE-2026-645988.8 HIGHsmb/client: Fix error code in smb2_aead_req_alloc()
CVE-2026-645847.8 HIGHusb: gadget: f_midi: cancel pending IN work before freeing the midi object
CVE-2026-645857.8 HIGHcan: esd_usb: kill anchored URBs before freeing netdevs
CVE-2026-645887.8 HIGHfuse-uring: fix data races on ring->ready
CVE-2026-645837.8 HIGHusb: gadget: udc: bdc: free IRQ and drain func_wake_notify before teardown
CVE-2026-646017.8 HIGHALSA: us144mkii: capture_urb_complete: redundant usb_anchor_urb corrupts anchor list on ea
CVE-2026-645997.8 HIGHcrypto: amlogic - avoid double cleanup in meson_crypto_probe()
CVE-2026-645877.0 HIGHnet: ethernet: arc: emac: quiesce interrupts before requesting IRQ
CVE-2026-68480x86/bugs: Make Safe-RET robust against interrupt injection
CVE-2026-64604KVM: VMX: Grab vmcs12 on CR8 interception update iff vCPU is in guest mode
CVE-2026-64603platform/x86: intel-hid: Protect ACPI notify handler against recursion
CVE-2026-64602iio: adc: spear: Initialize completion before requesting IRQ
CVE-2026-64596libfs: set SB_I_NOEXEC and SB_I_NODEV by default in init_pseudo()
CVE-2026-64595HID: hid-lenovo-go: cancel cfg_setup work in hid_go_cfg_remove()
CVE-2026-64593btrfs: do not trim a device which is not writeable
CVE-2026-64594usb: gadget: f_fs: initialize reset_work at allocation time
CVE-2026-64592riscv: mm: Unconditionally sfence.vma for spurious fault
CVE-2026-64591iommu/vt-d: Avoid WARNING in sva unbind path
CVE-2026-64590dma-buf/udmabuf: skip redundant cpu sync to fix cacheline EEXIST warning

Showing 20 of 22 CVEs. View all on vendor page →

IV. 関連脆弱性

V. CVE-2026-64597へのコメント

まだコメントはありません


コメントを残す