https://seclists.org/oss-sec/2026/q2/767: CIFSwitch: Linux kernel/cifs-utils local root via forged cifs.spnego upcall
Published Jun 1, 2026
·Updated
Affected Software
2 affected components
Linux Linux kernel (cifs)
cifs-utils cifs-utils
Frequently Asked Questions
1
What is the severity of CVE-2026-46243?
CVE-2026-46243 has been classified as a high-severity vulnerability due to its potential to allow local root access.
2
How do I fix CVE-2026-46243?
To fix CVE-2026-46243, update the Linux kernel and cifs-utils to the latest patched versions as recommended by your distribution.
3
What systems are affected by CVE-2026-46243?
CVE-2026-46243 affects systems running the vulnerable versions of the Linux kernel with cifs-utils.
4
What is the impact of CVE-2026-46243?
The impact of CVE-2026-46243 allows an attacker to gain local root privileges via a forged cifs.spnego upcall.
5
When was CVE-2026-46243 published?
CVE-2026-46243 was published on June 1, 2026.