PT-2023-2818 · Linux+5 · Linux Kernel+5

Quentin Minster

+1

·

Published

2023-04-27

·

Updated

2024-08-27

·

CVE-2023-32252

CVSS v2.0

7.8

High

VectorAV:N/AC:L/Au:N/C:N/I:N/A:C
Name of the Vulnerable Software and Affected Versions Linux Kernel (affected versions not specified)
Description A flaw was found in the Linux kernel's ksmbd, a high-performance in-kernel SMB server. The specific flaw exists within the handling of SMB2 LOGOFF commands. The issue results from the lack of proper validation of a pointer prior to accessing it. An attacker can leverage this vulnerability to create a denial-of-service condition on the system.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

DoS

NULL Pointer Dereference

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

ALT-PU-2024-4263
ALT-PU-2024-4843
AZL-27635
AZL-27757
BDU:2023-02744
CVE-2023-32252
USN-6338-1
USN-6338-2
USN-6344-1
USN-6626-1
USN-6626-2
USN-6626-3
USN-6628-1
USN-6628-2
ZDI-23-700

Affected Products

Alt Linux
Astra Linux
Linux Kernel
Linuxmint
Red Os
Ubuntu