← Back to CVEs
CVE-2026-23364
HIGH7.4
Description
In the Linux kernel, the following vulnerability has been resolved: ksmbd: Compare MACs in constant time To prevent timing attacks, MAC comparisons need to be constant-time. Replace the memcmp() with the correct function, crypto_memneq().
CVE Details
CVSS v3.1 Score7.4
SeverityHIGH
CVSS VectorCVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:N
Attack VectorNETWORK
ComplexityHIGH
Privileges RequiredNONE
User InteractionNONE
Published3/25/2026
Last Modified4/2/2026
Sourcenvd
Honeypot Sightings0
References
https://git.kernel.org/stable/c/2cdc56ed67615ba0921383a688f24415ebe065f3(416baaa9-dc9f-4396-8d5f-8c081fb06d67)
https://git.kernel.org/stable/c/307afccb751f542246bd5dc68a2c1ffe1a78418c(416baaa9-dc9f-4396-8d5f-8c081fb06d67)
https://git.kernel.org/stable/c/93c0a22fec914ec4b697e464895a0f594e29fb28(416baaa9-dc9f-4396-8d5f-8c081fb06d67)
https://git.kernel.org/stable/c/c5794709bc9105935dbedef8b9cf9c06f2b559fa(416baaa9-dc9f-4396-8d5f-8c081fb06d67)
https://git.kernel.org/stable/c/cd52a0e309659537048a864211abc3ea4c5caa63(416baaa9-dc9f-4396-8d5f-8c081fb06d67)
https://git.kernel.org/stable/c/f4588b85efd6007d46b80aa1b9fb746628ffb3dc(416baaa9-dc9f-4396-8d5f-8c081fb06d67)
IOC Correlations
No correlations recorded
This product uses data from the NVD API but is not endorsed or certified by the NVD.