CVE-2026-31710: smb: client: fix dir separator in SMB1 UNIX mounts
In the Linux kernel, the following vulnerability has been resolved:
smb: client: fix dir separator in SMB1 UNIX mounts
When calling cifsmountgettcon() with SMB1 UNIX mounts, @cifssb->mntcifsflags needs to be read or updated only after calling resetcifsunixcaps(), otherwise it might end up with missing CIFSMOUNTPOSIXACL and CIFSMOUNTPOSIXPATHS bits.
This fixes the wrong dir separator used in paths caused by the missing CIFSMOUNTPOSIXPATHS bit in cifssbinfo::mntcifsflags.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2026-31710?
CVE-2026-31710 has been classified as a moderate severity vulnerability.
How do I fix CVE-2026-31710?
To fix CVE-2026-31710, you should update to the latest stable version of the Linux kernel that contains the patch.
Which software is affected by CVE-2026-31710?
CVE-2026-31710 affects the Linux kernel specifically in relation to SMB1 UNIX mounts.
What type of vulnerability is CVE-2026-31710?
CVE-2026-31710 is a vulnerability related to improper handling of directory separators in SMB1 UNIX mounts.
Is CVE-2026-31710 exploitable remotely?
CVE-2026-31710 could be exploitable remotely depending on the configuration and exposure of the affected system.