VULNERABILITY OVERVIEW CVE-2026-31433 is an out-of-bounds (OOB) write vulnerability in the Linux kernel's ksmbd (SMB server implementation) that affects the get_file_all_info() function when processing compound SMB requests. The flaw occurs when a QUERY_DIRECTORY request is combined with a QUERY_INFO (FILE_ALL_INFORMATION) request, and insufficient buffer validation allows the filename to be written beyond allocated memory boundaries during UTF-16 conversion. SEVERITY ASSESSMENT The vulnerability requires a local or network-based attacker to craft a malicious compound SMB request, though the attack complexity appears moderate given the specific conditions needed (compound request structure and buffer consumption patterns). The potential impact includes memory corruption, information disclosure, and possible privilege escalation or denial of service, depending on the kernel memory layout and protection mechanisms present on the affected system. While CVSS scoring is unavailable, the FAUCET Risk Score of 20.0/100 and EPSS score of 0.00013 suggest relatively low overall risk in the current threat landscape. EXPLOITATION STATUS There is no evidence of active exploitation, no publicly available exploit code, and the vulnerability is not included on the CISA Known Exploited Vulnerabilities (KEV) catalog. Community attention appears minimal, with this issue appearing to be addressed through standard Linux kernel patching processes. Organizations should apply available kernel updates containing the fix when the vulnerability details become more widely documented.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
>= 5.15.145, < 5.15.203CPE match | cpe:2.3:a:linux:linux_kernel:*:*:*:*:*:*:*:* | ||
>= 6.1.71, < 6.1.168CPE match | cpe:2.3:a:linux:linux_kernel:*:*:*:*:*:*:*:* | ||
>= 5.15.145, < 5.15.203CPE matchmatch criteria | cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:* | ||
>= 6.1.71, < 6.1.168CPE matchmatch criteria | cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:* | ||
>= 6.6, < 6.6.131CPE matchmatch criteria | cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:* |
CVSS version used by this source: 3.1
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
The average CVE in this peer group has 0.0 Twitter, 0.0 Reddit, 0.3 Bluesky, 0.1 Mastodon, and 0.2 GitHub mentions.
The average CVE in this peer group has 0.1 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.
Linux kernel (Azure CVM) vulnerabilities
Jul 24, 2026Linux kernel vulnerabilities
Jul 24, 2026Linux kernel (Azure CVM) vulnerabilities
Jul 24, 2026Linux kernel (Azure FIPS) vulnerabilities
Jul 24, 2026Linux kernel (Azure CVM) vulnerabilities
Jul 24, 2026Linux kernel (Azure) vulnerabilities
Jul 24, 2026Linux kernel (AWS) vulnerabilities
Jul 24, 2026Linux kernel (NVIDIA) vulnerabilities
Jul 23, 2026Linux kernel (Oracle) vulnerabilities
Jul 23, 2026Linux kernel vulnerabilities
Jul 23, 2026Linux kernel (NVIDIA Tegra) vulnerabilities
Jul 21, 2026Linux kernel vulnerabilities
Jul 21, 2026Linux kernel (GCP FIPS) vulnerabilities
Jul 21, 2026Linux kernel vulnerabilities
Jul 20, 2026kernel: ksmbd: fix potencial OOB in get_file_all_info() for compound requests
Apr 22, 2026ksmbd: fix potencial OOB in get_file_all_info() for compound requests
Apr 14, 2026