CVE-2026-31410: Linux Kernel

Medium severity, CVSS 5.5. EPSS: 0.2% chance of exploitation in the next 30 days.

In the Linux kernel, the following vulnerability has been resolved: ksmbd: use volume UUID in FS_OBJECT_ID_INFORMATION Use sb->s_uuid for a proper volume identifier as the primary choice. For filesystems that do not provide a UUID, fall back to stfs.f_fsid obtained from vfs_statfs().

Affected products

  • Linux Linux Kernel: from 5.15, before 6.12.78 (fixed in 6.12.78); from 6.13, before 6.18.20 (fixed in 6.18.20); from 6.19, before 6.19.10 (fixed in 6.19.10); version 7.0 only

Published 2026-04-06. Last modified 2026-07-24.