In the Linux kernel, the following vulnerability has been resolved:
ksmbd: smbdirect: validate data_offset and data_length field of smb_direct_data_transfer
If data_offset and data_length of smb_direct_data_transfer struct are
invalid, out of bounds issue could happen.
This patch validate data_offset and data_length field in recv_done.
References
Configurations
Configuration 1 (hide)
|
History
No history.
Information
Published : 2025-10-04 08:15
Updated : 2026-01-27 19:53
NVD link : CVE-2025-39943
Mitre link : CVE-2025-39943
CVE.ORG link : CVE-2025-39943
JSON object : View
Products Affected
linux
- linux_kernel
CWE
CWE-125
Out-of-bounds Read
