Vulnerability Description
In the Linux kernel, the following vulnerability has been resolved: fs: afs: revert mmap_prepare() change Partially reverts commit 9d5403b1036c ("fs: convert most other generic_file_*mmap() users to .mmap_prepare()"). This is because the .mmap invocation establishes a refcount, but .mmap_prepare is called at a point where a merge or an allocation failure might happen after the call, which would leak the refcount increment. Functionality is being added to permit the use of .mmap_prepare in this case, but in the interim, we need to fix this.
CVSS Score
HIGH
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Linux | Linux Kernel | >= 6.17, < 6.18.27 |
References
- https://git.kernel.org/stable/c/48c7a0eaeea41da17d1d84d2d7a4c40be122b246Patch
- https://git.kernel.org/stable/c/f51f85c044809fbd39ac8ae07ac99bc43ce32bd5Patch
- https://git.kernel.org/stable/c/fbfc6578eaca12daa0c09df1e9ba7f2c657b49daPatch
FAQ
What is CVE-2026-46100?
CVE-2026-46100 is a vulnerability with a CVSS score of 7.8 (HIGH). In the Linux kernel, the following vulnerability has been resolved: fs: afs: revert mmap_prepare() change Partially reverts commit 9d5403b1036c ("fs: convert most other generic_file_*mmap() users to...
How severe is CVE-2026-46100?
CVE-2026-46100 has been rated HIGH with a CVSS base score of 7.8/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2026-46100?
Check the references section above for vendor advisories and patch information. Affected products include: Linux Linux Kernel.