Unrated severityNVD Advisory· Published Feb 23, 2024· Updated May 4, 2025
ksmbd: validate mech token in session setup
CVE-2024-26594
Description
In the Linux kernel, the following vulnerability has been resolved:
ksmbd: validate mech token in session setup
If client send invalid mech token in session setup request, ksmbd validate and make the error if it is invalid.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
7- osv-coords4 versionspkg:deb/ubuntu/linux-aws@6.5.0-1021.21?arch=source&distro=manticpkg:deb/ubuntu/linux-laptop@6.5.0-1017.20?arch=source&distro=manticpkg:deb/ubuntu/linux-oem-6.5pkg:deb/ubuntu/linux-oracle@6.5.0-1024.24?arch=source&distro=mantic
< 6.5.0-1021.21+ 3 more
- (no CPE)range: < 6.5.0-1021.21
- (no CPE)range: < 6.5.0-1017.20
- (no CPE)range: < 6.5.0-1022.23
- (no CPE)range: < 6.5.0-1024.24
Patches
Vulnerability mechanics
References
5- git.kernel.org/stable/c/5e6dfec95833edc54c48605a98365a7325e5541emitre
- git.kernel.org/stable/c/6eb8015492bcc84e40646390e50a862b2c0529c9mitre
- git.kernel.org/stable/c/92e470163d96df8db6c4fa0f484e4a229edb903dmitre
- git.kernel.org/stable/c/a2b21ef1ea4cf632d19b3a7cc4d4245b8e63202amitre
- git.kernel.org/stable/c/dd1de9268745f0eac83a430db7afc32cbd62e84bmitre
News mentions
0No linked articles in our index yet.