cbcvebase.
CVE-2026-31608
published 2026-04-24

CVE-2026-31608: In the Linux kernel, the following vulnerability has been resolved: smb: server: avoid double-free in smb_direct_free_sendmsg after…

PriorityP346critical9.8CVSS 3.1
AVNACLPRNUINSUCHIHAH
EPSS
0.46%
37.0th percentile
In the Linux kernel, the following vulnerability has been resolved: smb: server: avoid double-free in smb_direct_free_sendmsg after smb_direct_flush_send_list() smb_direct_flush_send_list() already calls smb_direct_free_sendmsg(), so we should not call it again after post_sendmsg() moved it to the batch list.

Affected

19 ranges
VendorProductVersion rangeFixed in
linuxlinux
linuxlinux>= 34abd408c8ba24d7c97bd02ba874d8c714f49db1 < 830de6eeb9db4cb7e758201fb99328ef4ca4b032830de6eeb9db4cb7e758201fb99328ef4ca4b032
linuxlinux>= 34abd408c8ba24d7c97bd02ba874d8c714f49db1 < 84ff995ae826aa6bbcc6c7b9ea569ff67c021d7284ff995ae826aa6bbcc6c7b9ea569ff67c021d72
linuxlinux>= 5ef18a2e66f2f33fdac64437bddfb9fe6389fdc7 < 6968c91fab05b8fc4d6700e0cf34472bb422df256968c91fab05b8fc4d6700e0cf34472bb422df25
linuxlinux>= 6.18.11 < 6.18.246.18.24
linuxlinux>= 6.19.1 < 6.19.146.19.14
linuxlinux>= 79242e7b6bc63efec28b7c235bc320806afce6c0 < 2ba03f46132b0d1a7bafb86e1ef61951a22540232ba03f46132b0d1a7bafb86e1ef61951a2254023
linuxlinux_kernel< 6.18.246.18.24
linuxlinux_kernel>= 6.19 < 6.19.146.19.14
linuxlinux_kernel>= 7.0 < 7.0.17.0.1
ubuntulinux
ubuntulinux-aws
ubuntulinux-gcp
ubuntulinux-hwe-7.0
ubuntulinux-ibm
ubuntulinux-nvidia
ubuntulinux-oracle
ubuntulinux-raspi
ubuntulinux-realtime

CVSS provenance

nvdv3.19.8CRITICALCVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
vendor_ubuntu2.0LOW
Stop checking back — get the weekly exploitation signal.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.