CVE-2026-90175

Source
https://cve.org/CVERecord?id=CVE-2026-90175
Import Source
https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2026-90175.json
JSON Data
https://api.osv.dev/v1/vulns/CVE-2026-90175
Downstream
Published
2026-09-17T16:07:01Z
Modified
2026-09-18T03:48:36Z
Summary
smb: server: fix leak of ksmbd_ipc_login_request_ext() returned buffer
Details

In the Linux kernel, the following vulnerability has been resolved:

smb: server: fix leak of ksmbd_ipc_login_request_ext() returned buffer

Free it unconditionally after ksmbd_alloc_user() calls.

kmemleak splat: unreferenced object 0xffff888103b83540 (size 192): comm "pool-0", pid 16970, jiffies 4377290937 hex dump (first 32 bytes): 00 00 00 00 01 00 00 00 00 00 00 00 00 00 00 00 ................ 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ................ backtrace (crc 408ccc66): __kvmalloc_node_noprof+0x730/0x920 handle_generic_event+0xec/0x1a0 [ksmbd] genl_family_rcv_msg_doit+0xe0/0x130 genl_rcv_msg+0x181/0x290 netlink_rcv_skb+0x4f/0x100 genl_rcv+0x28/0x40 netlink_unicast+0x1e6/0x2c0 netlink_sendmsg+0x20a/0x450 ____sys_sendmsg+0x2e8/0x310 ___sys_sendmsg+0x78/0xc0 __sys_sendmsg+0x63/0xc0 do_syscall_64+0xa1/0x670 entry_SYSCALL_64_after_hwframe+0x76/0x7e

Database specific
{
    "cna_assigner": "Linux",
    "osv_generated_from": "https://github.com/CVEProject/cvelistV5/tree/main/cves/2026/90xxx/CVE-2026-90175.json"
}
References

Affected packages

Git / git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git

Affected ranges

Type
GIT
Repo
https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git
Events
Introduced
8a3cd890fd2a7d016a821a1c9dfd8a84d45ad320
Fixed
4d6fe49fa3e7fbd779c761518e6572e340233c9b
Type
GIT
Repo
https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git
Events
Introduced
a77e0e02af1c2db5fc040511aa78a58a52e116ab
Fixed
c9f2872e91b9fe99c1d0ba768906f7aeb48c8517
Fixed
7a98c3b903b10c4d6176948254012b5ca24b071b
Fixed
abb5146b2d8197d695ea9eaa0847c73e34f00985
Fixed
1c3ebf832d010c08afe1359215d4121cb1ed2de5
Type
GIT
Repo
https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git
Events
Introduced
6.6.141
Fixed
6.6.157

Affected versions

v6.*
v6.6.141
v6.6.142
v6.6.143
v6.6.144
v6.6.145
v6.6.146
v6.6.147
v6.6.148
v6.6.149
v6.6.150
v6.6.151
v6.6.152
v6.6.153
v6.6.154
v6.6.155
v6.6.156

Database specific

source
"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2026-90175.json"

Linux / Kernel

Package

Name
Kernel

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0 Unknown introduced version / All previous versions are affected
Fixed
6.6.157
Type
ECOSYSTEM
Events
Introduced
6.7.0
Fixed
6.12.110
Type
ECOSYSTEM
Events
Introduced
6.12.0
Fixed
6.18.52
Type
ECOSYSTEM
Events
Introduced
6.13.0
Fixed
7.2.6

Database specific

source
"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2026-90175.json"