Back to Security Advisories
High 2026-07-16

Cifs-Utils Security Update — AlmaLinux 9 (ALSA-2026:39576)

AlmaLinux 9

The SMB/CIFS protocol is a standard file sharing protocol widely deployed on Microsoft Windows machines. The cifs-utils packages contain tools for mounting shares on Linux using the SMB/CIFS protocol. The tools in this package work in conjunction with support in the kernel to allow one to mount a SMB/CIFS share onto…

The SMB/CIFS protocol is a standard file sharing protocol widely deployed on Microsoft Windows machines. The cifs-utils packages contain tools for mounting shares on Linux using the SMB/CIFS protocol. The tools in this package work in conjunction with support in the kernel to allow one to mount a SMB/CIFS share onto…

Type:
security

Severity:
important

Release date:
2026-07-16

Description:
The SMB/CIFS protocol is a standard file sharing protocol widely deployed on Microsoft Windows machines. The cifs-utils packages contain tools for mounting shares on Linux using the SMB/CIFS protocol. The tools in this package work in conjunction with support in the kernel to allow one to mount a SMB/CIFS share onto a client and use it as if it were a standard Linux file system.

Security Fix(es):

* cifs-utils: local privilege escalation via forged cifs.spnego key description in cifs.upcall (CVE-2026-12505)

Bug Fix(es) and Enhancement(s):

* cifs-utils: regression with kerberos mount [almalinux-9.8.z] (JIRA:AlmaLinux-192982)

For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.

Updated packages listed below:

Architecture Package Checksum
aarch64 cifs-utils-7.6-2.el9_8.aarch64.rpm 9113b326393b451f1a2fc8af4bb693126fe79789e32e56fd4df5bc532fd2293a
aarch64 pam_cifscreds-7.6-2.el9_8.aarch64.rpm 98e3b5b9969bf60decb55ab0a0777814135445dbb1c122effe628c299db4c2c6
aarch64 cifs-utils-devel-7.6-2.el9_8.aarch64.rpm a752dd604c1a425ee27b7f08c02395a06159f4670cbad533ce34e566fbb74b2e
i686 cifs-utils-devel-7.6-2.el9_8.i686.rpm bcfaeb41780b14783d19b831cc0d652a49b8d96a7801e2cc18a11e312cc48e3b
ppc64le pam_cifscreds-7.6-2.el9_8.ppc64le.rpm 6a8f3cd86de540474334d71a92c8a6aa9de71e209255a37d86ab030e7192a59b
ppc64le cifs-utils-devel-7.6-2.el9_8.ppc64le.rpm a8af3bb4b85dd4c965b08bc49311ffa9c8452ce5422597ec25ec92e9bb9f9b38
ppc64le cifs-utils-7.6-2.el9_8.ppc64le.rpm ff68e3f768487253e4ee250a2ef3128d4d85a1c5c7e94e15de6110cf3bb13f5e
s390x cifs-utils-devel-7.6-2.el9_8.s390x.rpm 4f465e6b1c8e3b69acc08d7c8f35f5adab6c69d92bafce5ace18f0b3a58ca3c6
s390x cifs-utils-7.6-2.el9_8.s390x.rpm 8aa582ba9fc079ee88ebc4b5060862e64d2b7cc9ceda7b975e60242084a741f3
s390x pam_cifscreds-7.6-2.el9_8.s390x.rpm 8dcab3b0dfd12b8b079a941943af198c6bc57266d2932283a860154bca4ef6b0
x86_64 cifs-utils-devel-7.6-2.el9_8.x86_64.rpm 812101dffb7d49a49f4735043501000fa5de46d6f09c4801a0a4a8cba8b6a27f
x86_64 pam_cifscreds-7.6-2.el9_8.x86_64.rpm 84d746e65337d3bef62d27d48ad778b93d92bb96d2d2f7c12878d91ef1a57326
x86_64 cifs-utils-7.6-2.el9_8.x86_64.rpm be23536d7e3e31e0ea4ca3eed6bbf6e6d710171c887868fa252534fb7db5d577

Notes:
This page is generated automatically from Red Hat security data and has not been checked for errors. For clarification or corrections please contact the AlmaLinux Packaging Team.

How to Apply the Fix

Update the affected packages on your server to the patched release, then restart the relevant services.

sudo dnf update
More Information

Check your system for vulnerabilities

Select your product and operating system to see the exact fix commands that apply to you.

Check Your System