CVE-2026-74592

Summary

In the Linux kernel, the following vulnerability has been resolved:

ima: Instantiate file_truncate and path_truncate hooks

Instantiate the file_truncate and path_truncate LSM hooks to reset the action cache flags (IMA_DONE_MASK) as soon as truncation is requested, so the file, based on policy, is re-collected, re-measured, re-audited, and re-appraised on next access.

Affected Software

VendorProductVersion RangeStatus
LinuxLinux3323eec921efd815178a23107ab63588c605c0b2 < 5f46705d96eb60587aa7035acfcbec977e08d620affected
LinuxLinux3323eec921efd815178a23107ab63588c605c0b2 < dd21c96a71e876c8df9ec546b885a2c5f47bbb05affected
LinuxLinux3323eec921efd815178a23107ab63588c605c0b2 < 0baed1fa2184c81e4baf76f445d3faa4b738c8f7affected
LinuxLinux3323eec921efd815178a23107ab63588c605c0b2 < b80bed5c871a80151351342c065579405ce77145affected
LinuxLinux2.6.30affected
LinuxLinux0 < 2.6.30unaffected
LinuxLinux6.12.104 <= 6.12.*unaffected
LinuxLinux6.18.45 <= 6.18.*unaffected
LinuxLinux7.1.9 <= 7.1.*unaffected
LinuxLinux7.2 <= *unaffected

Weaknesses

References