CVE-2026-74592 PUBLISHED

ima: Instantiate file_truncate and path_truncate hooks

Assigner: Linux
Reserved: 15.08.2026 Published: 22.08.2026 Updated: 22.08.2026

In the Linux kernel, the following vulnerability has been resolved:

ima: Instantiate file_truncate and path_truncate hooks

Instantiate the file_truncate and path_truncate LSM hooks to reset the action cache flags (IMA_DONE_MASK) as soon as truncation is requested, so the file, based on policy, is re-collected, re-measured, re-audited, and re-appraised on next access.

Product Status

Vendor Linux
Product Linux
Versions Default: unaffected
  • affected from 1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 to 5f46705d96eb60587aa7035acfcbec977e08d620 (excl.)
  • affected from 1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 to dd21c96a71e876c8df9ec546b885a2c5f47bbb05 (excl.)
  • affected from 1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 to 0baed1fa2184c81e4baf76f445d3faa4b738c8f7 (excl.)
  • affected from 1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 to b80bed5c871a80151351342c065579405ce77145 (excl.)
  • affected from 0 to 6.12.104 (excl.)
  • affected from 0 to 6.18.45 (excl.)
  • affected from 0 to 7.1.9 (excl.)
Vendor Linux
Product Linux
Versions Default: affected
  • unaffected from 6.12.104 to 6.12.* (incl.)
  • unaffected from 6.18.45 to 6.18.* (incl.)
  • unaffected from 7.1.9 to 7.1.* (incl.)
  • unaffected from 7.2 to * (incl.)

References