[UBUNTU Jammy 0/1] CVE-2022-47940

Thadeu Lima de Souza Cascardo cascardo at canonical.com
Tue Jan 3 14:32:50 UTC 2023


[Impact]
A ksmbd authenticated attacker can exploit an out-of-bounds read to
potentially leak system information.

[Potential regression]
ksmbd may regress.

Marios Makassikis (1):
  ksmbd: validate length in smb2_write()

 fs/ksmbd/smb2pdu.c | 42 ++++++++++++++++--------------------------
 1 file changed, 16 insertions(+), 26 deletions(-)

-- 
2.34.1




More information about the kernel-team mailing list