CVE-2023-52440
UNKNOWN
Published 2024-02-21T07:21:00.438Z
Actions:
No CVSS data available
Description
In the Linux kernel, the following vulnerability has been resolved:
ksmbd: fix slub overflow in ksmbd_decode_ntlmssp_auth_blob()
If authblob->SessionKey.Length is bigger than session key
size(CIFS_KEY_SIZE), slub overflow can happen in key exchange codes.
cifs_arc4_crypt copy to session key array from SessionKey from client.
Available Exploits
No exploits available for this CVE.
Related News
No news articles found for this CVE.
Affected Products
References
Published: 2024-02-21T07:21:00.438Z
Last Modified: 2025-05-04T07:36:35.594Z
Copied to clipboard!