CVE-2024-26828: Linux Kernel
Critical severity, CVSS 9.4. EPSS: 0.8% chance of exploitation in the next 30 days.
In the Linux kernel, the following vulnerability has been resolved: cifs: fix underflow in parse_server_interfaces() In this loop, we step through the buffer and after each item we check if the size_left is greater than the minimum size we need. However, the problem is that "bytes_left" is type ssize_t while sizeof() is type size_t. That means that because of type promotion, the comparison is done as an unsigned and if we have negative bytes left the loop continues instead of ending.
Affected products
- Linux Linux Kernel: from 4.18, before 6.1.79 (fixed in 6.1.79); from 6.2, before 6.6.18 (fixed in 6.6.18); from 6.7, before 6.7.6 (fixed in 6.7.6); version 6.8 only
Published 2024-04-17. Last modified 2026-08-04.