CVE-2026-64136
In the Linux kernel, the following vulnerability has been resolved:
smb: client: protect tccount increment in smb2findsmbsesstconunlocked()
Commit 96c4af418586 ("cifs: Fix locking usage for tcon fields")
refactored cifs code to change cifstcpseslock for tclock around
tc_count changes.
There was missing lock around tc_count increment inside
smb2findsmbsesstcon_unlocked().
Package Versions Affected
Automatically patch vulnerabilities without upgrading
CVSS Version



Related Resources
References
https://git.kernel.org/stable/c/13fb413ae22a37c69341918a6d651d19a9b0b9b7, https://git.kernel.org/stable/c/4d8690dace005a38e6dbde9ecce2da3ad85c7c41, https://git.kernel.org/stable/c/7df1df6f40c0720d30206aa35c0343b962350e0d, https://git.kernel.org/stable/c/bf4ebdb19ff9b3cdf992b50715fe61633327416a, https://git.kernel.org/stable/c/e374f4e496fef8168784f93a4477d67be34485fd, https://github.com/CVEProject/cvelistV5/tree/main/cves/2026/64xxx/CVE-2026-64136.json, https://nvd.nist.gov/vuln/detail/CVE-2026-64136, https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git