CVE-2022-47940

CVSS v3.1 8.1 (High)
81% Progress
EPSS 0.15 % (52th)
0.15% Progress
Affected Products 1
Advisories 5
NVD Status Analyzed

An issue was discovered in ksmbd in the Linux kernel 5.15 through 5.18 before 5.18.18. fs/ksmbd/smb2pdu.c lacks length validation in the non-padding case in smb2_write.

Weaknesses
CWE-125
Out-of-bounds Read
CVE Status
PUBLISHED
NVD Status
Analyzed
CNA
MITRE
Published Date
2022-12-23 16:15:12
(21 months ago)
Updated Date
2024-08-21 18:19:29
(3 weeks ago)

Affected Products

Loading...
Loading...
Loading...

Configuration #1

    CPE23 From Up To
  Linux Kernel from 5.15 version and prior 5.15.145 version cpe:2.3:o:linux:linux_kernel >= 5.15 < 5.15.145
  Linux Kernel from 5.16 version and prior 5.18.18 version cpe:2.3:o:linux:linux_kernel >= 5.16 < 5.18.18
Loading...
Loading...
Loading...
Loading...
Loading...
Loading...
Loading...
Loading...