In the Linux kernel, the following vulnerability has been resolved:
ksmbd: validate request buffer size in smb2_allocate_rsp_buf()
The response buffer should be allocated in smb2_allocate_rsp_buf
before validating request. But the fields in payload as well as smb2 header
is used in smb2_allocate_rsp_buf(). This patch add simple buffer size
validation to avoid potencial out-of-bounds in request buffer.
Metrics
Affected Vendors & Products
References
History
Thu, 18 Sep 2025 14:30:00 +0000
Type | Values Removed | Values Added |
---|---|---|
CPEs | cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:* cpe:2.3:o:linux:linux_kernel:6.9:rc1:*:*:*:*:*:* cpe:2.3:o:linux:linux_kernel:6.9:rc2:*:*:*:*:*:* cpe:2.3:o:linux:linux_kernel:6.9:rc3:*:*:*:*:*:* cpe:2.3:o:linux:linux_kernel:6.9:rc4:*:*:*:*:*:* cpe:2.3:o:linux:linux_kernel:6.9:rc5:*:*:*:*:*:* |
|
Metrics |
cvssV3_1
|
cvssV3_1
|
Tue, 24 Sep 2024 19:00:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Weaknesses | CWE-120 |

Status: PUBLISHED
Assigner: Linux
Published: 2024-05-01T05:26:51.773Z
Updated: 2025-05-04T09:00:09.699Z
Reserved: 2024-02-19T14:20:24.196Z
Link: CVE-2024-26936

Updated: 2024-08-02T00:21:05.890Z

Status : Analyzed
Published: 2024-05-01T06:15:08.833
Modified: 2025-09-18T14:19:00.480
Link: CVE-2024-26936
