CVE-2026-46100

Published: Mag 27, 2026 Last Modified: Mag 27, 2026
ExploitDB:
Other exploit source:
Google Dorks:

Description

AI Translation Available

In the Linux kernel, the following vulnerability has been resolved:

fs: afs: revert mmap_prepare() change

Partially reverts commit 9d5403b1036c ('fs: convert most other
generic_file_*mmap() users to .mmap_prepare()').

This is because the .mmap invocation establishes a refcount, but
.mmap_prepare is called at a point where a merge or an allocation failure
might happen after the call, which would leak the refcount increment.

Functionality is being added to permit the use of .mmap_prepare in this
case, but in the interim, we need to fix this.

https://git.kernel.org/stable/c/48c7a0eaeea41da17d1d84d2d7a4c40be122b246
https://git.kernel.org/stable/c/f51f85c044809fbd39ac8ae07ac99bc43ce32bd5
https://git.kernel.org/stable/c/fbfc6578eaca12daa0c09df1e9ba7f2c657b49da