imPC@ndo IT

Tracker / CVE-2022-47940

CVE-2022-47940

High 8.1

An issue was discovered in ksmbd in the Linux kernel 5.15 through 5.18 before 5.18.18. fs/ksmbd/smb2pdu.c lacks length validation in the non-padding case in smb2_write.

Affected products and versions

linux linux_kernel · 5.15 → 5.15.145
linux linux_kernel · 5.16 → 5.18.18

Analysis

This page is not indexable yet.Until it carries original analysis — what it actually exposes, how to check in two minutes whether a system was touched, what to do if it was — the page stays noindex. The database decides that, not the template.

References