cve/2024/CVE-2024-26811.md
2024-05-25 21:48:12 +02:00

876 B

CVE-2024-26811

Description

In the Linux kernel, the following vulnerability has been resolved:ksmbd: validate payload size in ipc responseIf installing malicious ksmbd-tools, ksmbd.mountd can return invalid ipcresponse to ksmbd kernel server. ksmbd should validate payload size ofipc response from ksmbd.mountd to avoid memory overrun orslab-out-of-bounds. This patch validate 3 ipc response that has payload.

POC

Reference

No PoCs from references.

Github