In the Linux kernel, the following vulnerability has been resolved:
ksmbd: fix out of bounds read in smb2_sess_setup
ksmbd does not consider the case of that smb2 session setup is
in compound request. If this is the second payload of the compound,
OOB read issue occurs while processing the first payload in
the smb2_sess_setup().
Metrics
Affected Vendors & Products
References
History
Thu, 21 Aug 2025 13:00:00 +0000
Type | Values Removed | Values Added |
---|---|---|
First Time appeared |
Linux
Linux linux Kernel |
|
Vendors & Products |
Linux
Linux linux Kernel |
Sat, 16 Aug 2025 13:45:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Description | In the Linux kernel, the following vulnerability has been resolved: ksmbd: fix out of bounds read in smb2_sess_setup ksmbd does not consider the case of that smb2 session setup is in compound request. If this is the second payload of the compound, OOB read issue occurs while processing the first payload in the smb2_sess_setup(). | |
Title | ksmbd: fix out of bounds read in smb2_sess_setup | |
References |
|

Status: PUBLISHED
Assigner: Linux
Published:
Updated: 2025-08-19T05:47:14.506Z
Reserved: 2023-07-24T14:52:44.448Z
Link: CVE-2023-3867

No data.

Status : Awaiting Analysis
Published: 2025-08-16T14:15:27.510
Modified: 2025-08-18T20:16:28.750
Link: CVE-2023-3867

No data.