imPC@ndo IT

Tracker / CVE-2023-32252

CVE-2023-32252

High 7.5

A flaw was found in the Linux kernel's ksmbd, a high-performance in-kernel SMB server. The specific flaw exists within the handling of SMB2_LOGOFF commands. The issue results from the lack of proper validation of a pointer prior to accessing it. An attacker can leverage this vulnerability to create a denial-of-service condition on the system.

Affected products and versions

linux linux_kernel · 5.15 → 5.15.145
linux linux_kernel · 5.16 → 6.1.29
linux linux_kernel · 6.2 → 6.2.16
linux linux_kernel · 6.3 → 6.3.2
netapp h300s_firmware
netapp h410c_firmware
netapp h410s_firmware
netapp h500s_firmware
netapp h700s_firmware

Analysis

This page is not indexable yet.Until it carries original analysis — what it actually exposes, how to check in two minutes whether a system was touched, what to do if it was — the page stays noindex. The database decides that, not the template.

References