目标达成 感谢每一位支持者 — 我们达成了 100% 目标!

目标: 1000 元 · 已筹: 1336

100%

CVE-2026-74522— Linux kernel 安全漏洞

CVSS 8.8 · High EPSS 0.40% · P34

可能的 ATT&CK 技术 1AI

T1046 · Network Service Discovery

影响版本矩阵 16

厂商产品版本范围状态
LinuxLinux8510a043d334ecdf83d4604782f288db6bf21d60< 67aaec2a1fdce3e1dde46c45b5d1ef8cf22f65cdaffected
8510a043d334ecdf83d4604782f288db6bf21d60< 0c3918c2cee62ec6c9de8d5c73ebfe6f833961acaffected
8510a043d334ecdf83d4604782f288db6bf21d60< 9be4a66f019ea90bd9deca70511f4f9ffebf5c6faffected
8510a043d334ecdf83d4604782f288db6bf21d60< cffbdc86393b0235383a20c8c59bc32f16036459affected
8510a043d334ecdf83d4604782f288db6bf21d60< e7188199eff46a636f3436356f0aae039be6dd66affected
df30cbfd3d8a70e61ce59f63ce5ed2261799ac10affected
aaf1d5ebb358f546414965b39da90107a7ca7ce5affected
5.15.38< 5.16affected
… +8 条更多
获取后续新漏洞提醒登录后订阅

一、 漏洞 CVE-2026-74522 基础信息

漏洞信息

对漏洞内容有疑问?看看神龙的深度分析是否有帮助!
查看神龙十问 ↗

尽管我们使用了先进的大模型技术,但其输出仍可能包含不准确或过时的信息。神龙努力确保数据的准确性,但请您根据实际情况进行核实和判断。

Vulnerability Title
ksmbd: fix use-after-free in __close_file_table_ids()
来源: CVE Program / CVE List V5
Vulnerability Description
In the Linux kernel, the following vulnerability has been resolved: ksmbd: fix use-after-free in __close_file_table_ids() A ksmbd_file can remain alive after logical close while another session holds a temporary reference obtained through ksmbd_lookup_fd_inode(). ksmbd_close_fd() currently marks the file closed and drops the idr-owned reference, but leaves the pointer published in the closing session's idr until the final reference is dropped. If the foreign holder performs the final ksmbd_fd_put(), __put_fd_final() supplies the foreign session's file table to __ksmbd_close_fd(). The object is then freed without being removed from its owner's idr, and the owner session later dereferences the stale pointer during file-table teardown. Remove the volatile id from the owner's idr while ksmbd_close_fd() still holds that table's lock, and clear volatile_id before dropping the idr-owned reference. A later foreign final put then only performs physical destruction and cannot remove the object from the wrong table.
来源: CVE Program / CVE List V5
CVSS Information
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
来源: CVE Program / CVE List V5
Vulnerability Type
N/A
来源: CVE Program / CVE List V5
Vulnerability Title
Linux kernel 安全漏洞
来源: 中国国家信息安全漏洞库 CNNVD
Vulnerability Description
Linux kernel是美国Linux基金会开源的一个操作系统内核。 Linux kernel 5.18版本存在安全漏洞,该漏洞源于ksmbd文件表关闭时存在释放后重用问题,可能导致系统崩溃。
来源: 中国国家信息安全漏洞库 CNNVD
CVSS Information
N/A
来源: 中国国家信息安全漏洞库 CNNVD
Vulnerability Type
N/A
来源: 中国国家信息安全漏洞库 CNNVD

受影响产品

厂商产品影响版本CPE订阅
LinuxLinux 8510a043d334ecdf83d4604782f288db6bf21d60 ~ 19bfd90d5aaf63217735d81964585c5306158e5f -
LinuxLinux 5.18 -

二、漏洞 CVE-2026-74522 的公开POC

#POC 描述源链接神龙链接
AI 生成 POC高级

未找到公开 POC。

登录以生成 AI POC

三、漏洞 CVE-2026-74522 的情报信息

登录查看更多情报信息。

CVE-2026-74522 补丁与修复 (5)

CVE-2026-74522 其他参考 (1)

同批安全公告 · Linux · 2026-08-15 · 共 845 条

CVE-2026-7428010.0 CRITICALLinux kernel 安全漏洞
CVE-2026-7447510.0 CRITICALLinux kernel 安全漏洞
CVE-2026-7240710.0 CRITICALLinux kernel 安全漏洞
CVE-2026-7430910.0 CRITICALLinux kernel 安全漏洞
CVE-2026-7240810.0 CRITICALLinux kernel 安全漏洞
CVE-2026-7242110.0 CRITICALLinux kernel 安全漏洞
CVE-2026-7427910.0 CRITICALLinux kernel 安全漏洞
CVE-2026-724939.9 CRITICALLinux kernel 安全漏洞
CVE-2026-720849.8 CRITICALLinux kernel 安全漏洞
CVE-2026-722499.8 CRITICALLinux kernel 安全漏洞
CVE-2026-722489.8 CRITICALLinux kernel 安全漏洞
CVE-2026-720989.8 CRITICALLinux kernel 安全漏洞
CVE-2026-724949.8 CRITICALLinux kernel 安全漏洞
CVE-2026-743459.8 CRITICALLinux kernel 安全漏洞
CVE-2026-742559.8 CRITICALLinux kernel 安全漏洞
CVE-2026-722219.8 CRITICALLinux kernel 安全漏洞
CVE-2026-722269.8 CRITICALLinux kernel 安全漏洞
CVE-2026-744289.8 CRITICALLinux kernel 安全漏洞
CVE-2026-720839.8 CRITICALLinux kernel 安全漏洞
CVE-2026-722349.8 CRITICALLinux kernel 安全漏洞

显示前 20 条,共 845 条。 查看全部 &rarr; →

IV. Related Vulnerabilities

V. Comments for CVE-2026-74522

暂无评论


发表评论