CVE-2026-64382
In the Linux kernel, the following vulnerability has been resolved: smb: client: fix double-free in SMB2_open() replay A response-bearing
CVSS
8.8
Alto
EPSS
0.4%
p29
KEV
—
Exploit Today
9
0-100
Publicado: 25 jul 2026 · Última mod.: 4 sept 2026 · CWE-415
0.4%EPSS · 30 días0.4%
2026-08-202026-09-17
In the Linux kernel, the following vulnerability has been resolved: smb: client: fix double-free in SMB2_open() replay A response-bearing attempt can return a replayable error and free its response buffer. If SMB2_open_init() fails before the next send, cleanup retains the previous buffer type and frees that response again. Reset response bookkeeping before each attempt to prevent the stale free.
- git.kernel.orghttps://git.kernel.org/stable/c/02bc2896bdc3e29362d6e40d404006944a159c25
- git.kernel.orghttps://git.kernel.org/stable/c/14498ff5ce0f272ce0ef988721413e06b7038972
- git.kernel.orghttps://git.kernel.org/stable/c/3196b5192f246df4272072f61a2f4a3e9967f55d
- git.kernel.orghttps://git.kernel.org/stable/c/b55e182f2324bc6a604c21a47aa6c448f719a532
- git.kernel.orghttps://git.kernel.org/stable/c/ff2d30927bc3bf3c629f0768d2068096e64ef5ce
CVECVSSEPSSKEVRExplotTítuloVis.
CVE-2026-201358.6 ALT38.8%
——12A vulnerability in the TLS 1.3 implementation in Cisco Secure Firewall Threat Defense (FTD) Software could allow an unauthenticated, remote attacker to cause an affected device to reload unexpectedly, resulting in a denial of service (DoS) condition.
This vulnerability is due to improper buffer management during the TLS 1.3 connection. An attacker could exploit this vulnerability by sending a crafted TLS 1.3 packet to an affected system through a TLS 1.3-enabled listening socket. A successful exploit could allow the attacker to cause the LINA process to crash, which would cause the device to reload. The reload can happen before or after authentication of the connection.Note: TLS 1.3 connections include both data traffic and user-management traffic.1dCVE-2026-845619.8 CRÍ49.6%
——15A double free issue was addressed with improved memory management. This issue is fixed in iOS 26.7 and iPadOS 26.7, iOS 27 and iPadOS 27, macOS Golden Gate 27, macOS Sequoia 15.8, macOS Tahoe 26.7, tvOS 27, visionOS 27, watchOS 27. An app may be able to cause unexpected system termination or corrupt kernel memory.1dCVE-2026-845585.5 MED2.1%
——1A double free issue was addressed with improved memory management. This issue is fixed in macOS Golden Gate 27. An app may be able to cause unexpected system termination.7hCVE-2026-859218.2 ALT18.1%
——5Double free in Windows Secure Kernel Mode allows an authorized attacker to elevate privileges locally.1dCVE-2026-237904.2 MED0.6%
——0An issue was discovered in DPU in Samsung Mobile Processor Exynos 1280, 2200, 1380, 1480, 2400, 1580, 2500, 1680, and 2600. A double-free vulnerability in the Samsung Exynos DPU driver (due to improper pointer management during DMA buffer reallocation) leads to kernel memory corruption and a potential use-after-free.3dCVE-2026-237897.8 ALT1.4%
——0An issue was discovered in MFC in Samsung Mobile Processor and Wearable Processor Exynos 850, 1080, 2100, 1280, 2200, 1330, 1380, 1480, 2400, 1580, 2500, 2600, 1680, W920, W930, and W1000. A double-free vulnerability in the Exynos MFC encoder driver (due to improper cleanup of dma_buf references during error handling) leads to kernel memory corruption and potential arbitrary code execution.1d