CVE-2026-93785: vulnerability in Linux
cifs: validate idmap key payload length
Published · Updated
3Vexday Risk Score
No sign of exploitation. No public exploitation artifact known so far.
ssvc Trackepss 0.2%
exploitation probability
0.2%top 94% of all CVEs
observed exploitation
nono source reports it
In the Linux kernel, the following vulnerability has been resolved:
cifs: validate idmap key payload length
The cifs.idmap key type stores its payload length in key->datalen, which
is limited to U16_MAX. Accepting a larger key payload truncates the
recorded length and can make later users interpret the payload using
inconsistent bounds.
Reject oversized preparsed payloads before allocating or copying them.
This keeps key->datalen consistent with the stored data for both inline
and separately allocated idmap payloads.
Affected products
Linux · LinuxRelated CVEs — Linux
In the same product, most dangerous first.
CVE-2024-53197HIGHALSA: usb-audio: Fix potential out-of-bound accesses for Extigy and Mbox devicesEPSS 4.1%KEVCVE-2026-31431HIGHcrypto: algif_aead - Revert to operating out-of-placeEPSS 3.4%KEVCVE-2024-53104HIGHmedia: uvcvideo: Skip parsing frames of type UVC_VS_UNDEFINED in uvc_parse_formatEPSS 3.4%KEVCVE-2025-39682CRITICALtls: fix handling of zero-length records on the rx_listEPSS 2.9%KEVCVE-2024-36971HIGHnet: fix __dst_negative_advice() raceEPSS 2.7%KEVCVE-2024-53150HIGHALSA: usb-audio: Fix out of bounds reads when finding clock sourcesEPSS 1.4%KEV
References
https://git.kernel.org/stable/c/125b05ac8ca8758950e4369c1542d57a162f504chttps://git.kernel.org/stable/c/3a4a34a732e8a08309eed0a74314dbd9f2f1c972https://git.kernel.org/stable/c/455488cd5054bcc59db40fa1cc2c004031a5b2a5https://git.kernel.org/stable/c/6cfeef221ac00d63c07f6122f58e6159bde69ca0https://git.kernel.org/stable/c/8b12f65d7caf16d124098cb4895a203367d35b57https://git.kernel.org/stable/c/945f6cde6bcf8f08f6fa5df8882b1b9582e55efahttps://git.kernel.org/stable/c/eeac976b74b4f697cfc517187b7cbfd72652dbbc