What is CVE-2026-68457?
This is a vulnerability in the ksmbd (SMB server) component of the Linux kernel where FSCTL mutations (like SET_SPARSE, SET_ZERO_DATA, SET_COMPRESSION) incorrectly use worker credentials instead of opener credentials for VFS helpers. This can lead to privilege escalation. Affected users should disable ksmbd or restrict network access until a security patch is applied.
Azərbaycanca: Linux nüvəsindəki ksmbd (SMB server) komponentində aşkar edilmiş bir zəiflikdir. Bu zəiflik, FSCTL mutasiyaları (məsələn, SET_SPARSE, SET_ZERO_DATA, SET_COMPRESSION) zamanı VFS funksiyalarının işçi etimadnamələri (worker credentials) ilə çağırılması səbəbindən yaranır, bu da icazə səviyyəsi yüksəldilməsinə (privilege escalation) gətirib çıxara bilər. Təsirə məruz qalan sistemlərin administratorları ksmbd xidmətini müvəqqəti deaktiv etməli və ya təhlükəsizlik yaması tətbiq olunana qədər şəbəkə girişini məhdudlaşdırmalıdır.
Related CVEs
link basis: same weakness class CWE-863
FAQ2
What can the CVE-2026-68457 vulnerability in the Linux kernel's ksmbd component lead to?
This vulnerability can lead to privilege escalation.
What temporary measures should be taken until a patch is applied for CVE-2026-68457?
Administrators should temporarily disable the ksmbd service or restrict network access until a security patch is applied.
See also6
This explainer is AI-written from source data — skopnix's own reporting on this CVE; CVSS scores, vendors and versions are never invented. See NVD for the official record.