Security Advisory

CVE-2026-64138

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2026-07-19 15:40:31
Last updated 2026-07-20 13:43:43
Assigner Linux
CVSS score 8.8
State PUBLISHED

Description

In the Linux kernel, the following vulnerability has been resolved: ksmbd: validate SID in parent security descriptor during ACL inheritance Introduce smb_validate_ntsd_sid() helper to safely validate Owner SID and Group SID inside the NT Security Descriptor (smb_ntsd) retrieved from the parent directory.