A flaw was found in the Linux kernel's ksmbd, a high-performance in-kernel SMB server. The specific flaw exists within the processing of SMB2_SESSION_SETUP commands. The issue results from the lack of proper locking when performing operations on an object. An attacker can leverage this vulnerability to execute code in the context of the kernel.
Metrics
Affected Vendors & Products
Advisories
| Source | ID | Title |
|---|---|---|
Debian DSA |
DSA-5448-1 | linux security update |
EUVD |
EUVD-2023-36507 | A flaw was found in the Linux kernel's ksmbd, a high-performance in-kernel SMB server. The specific flaw exists within the processing of SMB2_SESSION_SETUP commands. The issue results from the lack of proper locking when performing operations on an object. An attacker can leverage this vulnerability to execute code in the context of the kernel. |
Ubuntu USN |
USN-6173-1 | Linux kernel (OEM) vulnerabilities |
Ubuntu USN |
USN-6338-1 | Linux kernel vulnerabilities |
Ubuntu USN |
USN-6338-2 | Linux kernel vulnerabilities |
Ubuntu USN |
USN-6344-1 | Linux kernel (Azure) vulnerabilities |
Ubuntu USN |
USN-6626-1 | Linux kernel vulnerabilities |
Ubuntu USN |
USN-6626-2 | Linux kernel vulnerabilities |
Ubuntu USN |
USN-6626-3 | Linux kernel (Azure) vulnerabilities |
Ubuntu USN |
USN-6628-1 | Linux kernel (Intel IoTG) vulnerabilities |
Ubuntu USN |
USN-6628-2 | Linux kernel (Intel IoTG) vulnerabilities |
Fixes
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
References
History
Tue, 15 Oct 2024 19:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Status: PUBLISHED
Assigner: redhat
Published:
Updated: 2025-02-13T16:50:28.282Z
Reserved: 2023-05-05T10:00:07.895Z
Link: CVE-2023-32250
Updated: 2024-08-02T15:10:24.376Z
Status : Modified
Published: 2023-07-10T16:15:52.413
Modified: 2024-11-21T08:02:58.833
Link: CVE-2023-32250
OpenCVE Enrichment
No data.
Debian DSA
EUVD
Ubuntu USN