PT-2023-2822 · Linux+3 · Linux Kernel+3

Published

2023-04-27

·

Updated

2026-03-14

·

CVE-2023-32255

CVSS v3.1

5.3

Medium

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:L
Name of the Vulnerable Software and Affected Versions Linux Kernel (affected versions not specified)
Description The issue is related to incorrect resource release in the ksmbd module of the Linux kernel, which can be exploited by a remote attacker to cause a denial-of-service using the SMB2 SESSION SETUP command.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Improper Resource Release

Missing Release of Resource after Effective Lifetime

Weakness Enumeration

Related Identifiers

BDU:2023-02748
CVE-2023-32255
OESA-2023-1467
OESA-2023-1468
OESA-2023-1471
ZDI-23-703

Affected Products

Astra Linux
Debian
Linux Kernel
Red Os