Wind River Support Network

HomeDefectsLIN1022-4699
Not to be fixed

LIN1022-4699 : Security Advisory - linux - CVE-2023-32257

Created: Jul 5, 2023    Updated: Sep 22, 2023
Resolved Date: Sep 22, 2023
Found In Version: 10.22.33.1
Severity: Standard
Applicable for: Wind River Linux LTS 22
Component/s: Kernel

Description

A flaw was found in the Linux kernel's ksmbd, a high-performance in-kernel SMB server. The specific flaw exists within the processing of SMB2_SESSION_SETUP and SMB2_LOGOFF commands. The issue results from the lack of proper locking when performing operations on an object. An attacker can leverage this vulnerability to execute code in the context of the kernel.

https://nvd.nist.gov/vuln/detail/CVE-2023-32257
Live chat
Online