Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-g2h7-7gvv-x89v

Опубликовано: 23 дек. 2022
Источник: github
Github: Не прошло ревью
CVSS3: 8.8

Описание

An issue was discovered in ksmbd in the Linux kernel before 5.19.2. There is a heap-based buffer overflow in set_ntacl_dacl, related to use of SMB2_QUERY_INFO_HE after a malformed SMB2_SET_INFO_HE command.

An issue was discovered in ksmbd in the Linux kernel before 5.19.2. There is a heap-based buffer overflow in set_ntacl_dacl, related to use of SMB2_QUERY_INFO_HE after a malformed SMB2_SET_INFO_HE command.

EPSS

Процентиль: 88%
0.03576
Низкий

8.8 High

CVSS3

Дефекты

CWE-787

Связанные уязвимости

CVSS3: 8.8
ubuntu
больше 3 лет назад

An issue was discovered in ksmbd in the Linux kernel 5.15 through 5.19 before 5.19.2. There is a heap-based buffer overflow in set_ntacl_dacl, related to use of SMB2_QUERY_INFO_HE after a malformed SMB2_SET_INFO_HE command.

CVSS3: 8.5
redhat
больше 3 лет назад

An issue was discovered in ksmbd in the Linux kernel 5.15 through 5.19 before 5.19.2. There is a heap-based buffer overflow in set_ntacl_dacl, related to use of SMB2_QUERY_INFO_HE after a malformed SMB2_SET_INFO_HE command.

CVSS3: 8.8
nvd
больше 3 лет назад

An issue was discovered in ksmbd in the Linux kernel 5.15 through 5.19 before 5.19.2. There is a heap-based buffer overflow in set_ntacl_dacl, related to use of SMB2_QUERY_INFO_HE after a malformed SMB2_SET_INFO_HE command.

CVSS3: 8.8
msrc
больше 3 лет назад

Описание отсутствует

CVSS3: 8.8
debian
больше 3 лет назад

An issue was discovered in ksmbd in the Linux kernel 5.15 through 5.19 ...

EPSS

Процентиль: 88%
0.03576
Низкий

8.8 High

CVSS3

Дефекты

CWE-787