Wind River Support Network

HomeDefectsLIN1022-4697
Fixed

LIN1022-4697 : Security Advisory - linux - CVE-2023-32248

Created: Jul 5, 2023    Updated: Jul 25, 2023
Resolved Date: Jul 14, 2023
Found In Version: 10.22.33.1
Fix Version: 10.22.33.9
Severity: Standard
Applicable for: Wind River Linux LTS 22
Component/s: Kernel

Description

A flaw was found in the Linux kernel's ksmbd, a high-performance in-kernel SMB server. The specific flaw exists within the handling of SMB2_TREE_CONNECT and SMB2_QUERY_INFO commands. The issue results from the lack of proper validation of a pointer prior to accessing it. An attacker can leverage this vulnerability to create a denial-of-service condition on the system.

https://nvd.nist.gov/vuln/detail/CVE-2023-32248

CVEs


Live chat
Online