OFFLINE
Awaiting data
Security intelligence
MinorCritical vulnerability

CVE-2026-89792 (CVSS 7.1)

NVD · officialPublished Sep 16, 2026Risk 23/100EPSS 0.1%

In the Linux kernel, the following vulnerability has been resolved: ksmbd: prevent out-of-bounds reads in share config responses Validate IPC share configuration payload sizes before consuming variable-length fields. Bound veto list parsing and account for the separator byte when deriving the path length.

CVSS
7.1
AV:LocalAC:LowPR:LowUI:NoneC:HighI:NoneA:High

This record is attributed to NVD. Exploitation status and remediation guidance are kept separate from the vulnerability's technical severity.

Open primary source