In the Linux kernel, the following vulnerability has been resolved: smb: client: let recv_done verify data_offset, data_length and remaining_data_length This is inspired by the related server fixes.
Upstream advisory: https://lore.kernel.org/linux-cve-announce/2025100417-CVE-2025-39933-e224@gregkh/T
This issue has been addressed in the following products: Red Hat Enterprise Linux 8 Via RHSA-2026:0760 https://access.redhat.com/errata/RHSA-2026:0760
This issue has been addressed in the following products: Red Hat Enterprise Linux 8 Via RHSA-2026:0759 https://access.redhat.com/errata/RHSA-2026:0759
This issue has been addressed in the following products: Red Hat Enterprise Linux 9 Via RHSA-2026:0793 https://access.redhat.com/errata/RHSA-2026:0793