VYPR
High severity7.8NVD Advisory· Published Jan 23, 2024· Updated Jun 17, 2026

CVE-2024-22705

CVE-2024-22705

Description

An issue was discovered in ksmbd in the Linux kernel before 6.6.10. smb2_get_data_area_len in fs/smb/server/smb2misc.c can cause an smb_strndup_from_utf16 out-of-bounds access because the relationship between Name data and CreateContexts data is mishandled.

AI Insight

LLM-synthesized narrative grounded in this CVE's description and references.

Affected products

10
  • Linux/Kernel9 versions
    cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*+ 8 more
    • cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*range: <6.6.10
    • cpe:2.3:o:linux:linux_kernel:6.7:rc1:*:*:*:*:*:*
    • cpe:2.3:o:linux:linux_kernel:6.7:rc2:*:*:*:*:*:*
    • cpe:2.3:o:linux:linux_kernel:6.7:rc3:*:*:*:*:*:*
    • cpe:2.3:o:linux:linux_kernel:6.7:rc4:*:*:*:*:*:*
    • cpe:2.3:o:linux:linux_kernel:6.7:rc5:*:*:*:*:*:*
    • cpe:2.3:o:linux:linux_kernel:6.7:rc6:*:*:*:*:*:*
    • cpe:2.3:o:linux:linux_kernel:6.7:rc7:*:*:*:*:*:*
    • (no CPE)
  • Range: <6.6.10

Patches

Vulnerability mechanics

References

2

News mentions

0

No linked articles in our index yet.