← All Advisories

CVE-2026-97557

Last refreshed2026-10-03

Status: UPDATED  |  Advisory ID: CVE-2026-97557

Key Details

CVECVE-2026-97557
CVSS Score / Version7.5 (High) / CVSS v3.1
Updated2026-09-25
CVSS VectorCVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
CVSS Proseattack vector is network; attack complexity is low; privileges required is none; user interaction is none; scope is unchanged; confidentiality impact is none; integrity impact is none; availability impact is high.
Affected productsLinux Linux

Affected Products, Subsystems & Sectors

VendorProductAffected VersionsPatch Status
LinuxLinux
SubsystemsGeneral OT
SectorsMultiple

What to Know

In the Linux kernel, the following vulnerability has been resolved:

smb: client: avoid leaking refcount in cifs_queue_oplock_break()

cifs_queue_oplock_break() unconditionally takes a reference on the

target file before queueing cifs_oplock_break(). Only that work item

decreases the reference counter again.

If another oplock break arrives while that work is still queued,

queue_work() will return false and not queue this second work item. As a

result, we will never reach the point to drop the file reference again

and are leaking this reference. This can be triggered when interacting

with a slow-responding server.

As a result, later unmount operations for this file system will fail with

BUG: Dentry ... still in use (1) [unmount of cifs cifs]

VFS: Busy inodes after unmount of cifs (cifs)

kernel BUG at fs/super.c:777!

Fix this by only incrementing the reference count if the work has been

queued successfully. Taking it after queue_work() is safe because all

three callers hold tcon->open_file_lock across the call and

_cifsFileInfo_put() decrements under that same lock, so a worker that

starts the handler in the window cannot drop the reference before it has

been taken. (NVD)

What to Do

Monitor Linux's web page for any future patch releases.

References

SourceReference
NVDhttps://nvd.nist.gov/vuln/detail/CVE-2026-97557
CVEhttps://www.cve.org/CVERecord?id=CVE-2026-97557