VYPR
Unrated severityNVD Advisory· Published Nov 18, 2024· Updated Nov 18, 2024

Kernel: ksmbd: read request memory leak denial-of-service vulnerability

CVE-2023-39180

Description

A flaw was found within the handling of SMB2_READ commands in the kernel ksmbd module. The issue results from not releasing memory after its effective lifetime. An attacker can leverage this to create a denial-of-service condition on affected installations of Linux. Authentication is not required to exploit this vulnerability, but only systems with ksmbd enabled are vulnerable.

Affected products

60

Patches

0

No patches discovered yet.

Vulnerability mechanics

AI mechanics synthesis has not run for this CVE yet.

References

3

News mentions

0

No linked articles in our index yet.