A flaw was found in the Linux kernel's ksmbd, a high-performance in-kernel SMB server. The specific flaw exists within the processing of SMB2_SESSION_SETUP and SMB2_LOGOFF commands. The issue results from the lack of proper locking when performing operations on an object. An attacker can leverage this vulnerability to execute code in the context of the kernel.
Metrics
Affected Vendors & Products
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2023-36514 | A flaw was found in the Linux kernel's ksmbd, a high-performance in-kernel SMB server. The specific flaw exists within the processing of SMB2_SESSION_SETUP and SMB2_LOGOFF commands. The issue results from the lack of proper locking when performing operations on an object. An attacker can leverage this vulnerability to execute code in the context of the kernel. |
Ubuntu USN |
USN-6338-1 | Linux kernel vulnerabilities |
Ubuntu USN |
USN-6338-2 | Linux kernel vulnerabilities |
Ubuntu USN |
USN-6344-1 | Linux kernel (Azure) vulnerabilities |
Ubuntu USN |
USN-6626-1 | Linux kernel vulnerabilities |
Ubuntu USN |
USN-6626-2 | Linux kernel vulnerabilities |
Ubuntu USN |
USN-6626-3 | Linux kernel (Azure) vulnerabilities |
Ubuntu USN |
USN-6628-1 | Linux kernel (Intel IoTG) vulnerabilities |
Ubuntu USN |
USN-6628-2 | Linux kernel (Intel IoTG) vulnerabilities |
Fixes
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
References
History
Tue, 29 Jul 2025 14:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Status: PUBLISHED
Assigner: redhat
Published:
Updated: 2025-07-29T13:38:44.217Z
Reserved: 2023-05-05T10:00:07.896Z
Link: CVE-2023-32257
Updated: 2024-08-02T15:10:23.977Z
Status : Modified
Published: 2023-07-24T16:15:11.680
Modified: 2024-11-21T08:02:59.257
Link: CVE-2023-32257
OpenCVE Enrichment
No data.
EUVD
Ubuntu USN