CVE-2024-26592

high

Description

In the Linux kernel, the following vulnerability has been resolved: ksmbd: fix UAF issue in ksmbd_tcp_new_connection() The race is between the handling of a new TCP connection and its disconnection. It leads to UAF on `struct tcp_transport` in ksmbd_tcp_new_connection() function.

References

https://git.kernel.org/stable/c/999daf367b924fdf14e9d83e034ee0f86bc17ec6

https://git.kernel.org/stable/c/69d54650b751532d1e1613a4fb433e591aeef126

https://git.kernel.org/stable/c/38d20c62903d669693a1869aa68c4dd5674e2544

https://git.kernel.org/stable/c/380965e48e9c32ee4263c023e1d830ea7e462ed1

https://git.kernel.org/stable/c/24290ba94cd0136e417283b0dbf8fcdabcf62111

http://www.openwall.com/lists/oss-security/2024/03/18/2

Details

Source: Mitre, NVD

Published: 2024-02-22

Updated: 2024-05-01

Risk Information

CVSS v2

Base Score: 6.8

Vector: CVSS2#AV:L/AC:L/Au:S/C:C/I:C/A:C

Severity: Medium

CVSS v3

Base Score: 7.8

Vector: CVSS:3.0/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H

Severity: High