CVE-2026-31476 — Linux: This allows a remote attacker to invalidate any active session by simply sending a
In the Linux kernel, the following vulnerability has been resolved: ksmbd: do not expire session on binding failure When a multichannel session binding request fails (e.g. wrong password), the error path unconditionally sets sess->state = SMB2_SESSION_EXPIRED. However, during binding, sess points to the target session looked up via ksmbd_session_lookup_slowpath() -- which belongs to another connection's user. This allows a remote attacker to invalidate any active session by CVSSv3.1 8.2 (HIGH) · EPSS 23th percentile