CVE-2026-72374

Source
https://cve.org/CVERecord?id=CVE-2026-72374
Import Source
https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2026-72374.json
JSON Data
https://api.osv.dev/v1/vulns/CVE-2026-72374
Downstream
Published
2026-08-15T05:56:09.182Z
Modified
2026-08-16T03:48:33.650557270Z
Summary
afs: Fix callback service message parsers to pass through -EAGAIN
Details

In the Linux kernel, the following vulnerability has been resolved:

afs: Fix callback service message parsers to pass through -EAGAIN

The AFS filesystem client uses an rxrpc server to listen for callback notifications. Each callback call type handler has a delivery function that parses the incoming request stream, and this should return -EAGAIN the last packet hasn't yet been seen, but all currently queued received data is consumed. afsextractdata() does this, but the -EAGAIN return is switched to 0 inadvertantly

Fix callback service message parsers to pass through -EAGAIN

Database specific
{
    "osv_generated_from": "https://github.com/CVEProject/cvelistV5/tree/main/cves/2026/72xxx/CVE-2026-72374.json",
    "cna_assigner": "Linux"
}
References

Affected packages

Git / git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git

Affected ranges

Type
GIT
Repo
https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git
Events
Introduced
d001648ec7cf8b21ae9eec8b9ba4a18295adfb14
Fixed
26b737b3769e92493fe94c34620399d93ca231ae
Fixed
09c67a7ded481482155b836c8c7f078a3075f8de
Fixed
239cd337c9d047e7097f5b2ebbb41ddfb8180bc6
Fixed
5a39b145a8fb49f316e7ec1f29ba51d68095c7e4
Fixed
772850871a2e772e26f9d93f1e9ddd413b3eeaa4
Fixed
0acbc09d2aca0432af45cec114f20d55ceafaec4
Fixed
f14dd036fad3d359f26f1282199cec06b3a9362b
Fixed
0f36469d7ce98b362934113c550d08bb0c784231

Database specific

source
"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2026-72374.json"

Linux / Kernel

Package

Name
Kernel

Affected ranges

Type
ECOSYSTEM
Events
Introduced
4.9.0
Fixed
5.10.261
Type
ECOSYSTEM
Events
Introduced
5.11.0
Fixed
5.15.212
Type
ECOSYSTEM
Events
Introduced
5.16.0
Fixed
6.1.178
Type
ECOSYSTEM
Events
Introduced
6.2.0
Fixed
6.6.145
Type
ECOSYSTEM
Events
Introduced
6.7.0
Fixed
6.12.97
Type
ECOSYSTEM
Events
Introduced
6.13.0
Fixed
6.18.40
Type
ECOSYSTEM
Events
Introduced
6.19.0
Fixed
7.1.5

Database specific

source
"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2026-72374.json"