In the Linux kernel, the following vulnerability has been resolved:
ksmbd: fix slab-out-of-bounds in smb_strndup_from_utf16()
If ->NameOffset of smb2_create_req is smaller than Buffer offset of
smb2_create_req, slab-out-of-bounds read can happen from smb2_open.
This patch set the minimum value of the name offset to the buffer offset
to validate name length of smb2_create_req().
References
Configurations
Configuration 1 (hide)
|
History
No history.
Information
Published : 2024-05-01 06:15
Updated : 2025-11-03 22:16
NVD link : CVE-2024-26954
Mitre link : CVE-2024-26954
CVE.ORG link : CVE-2024-26954
JSON object : View
Products Affected
linux
- linux_kernel
CWE
CWE-125
Out-of-bounds Read
