CVE-2022-47940Out-of-bounds Read in Kernel

CWE-125Out-of-bounds Read14 documents7 sources
Severity
8.1HIGHNVD
OSV5.5
EPSS
1.5%
top 18.70%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedDec 23
Latest updateFeb 15

Description

An issue was discovered in ksmbd in the Linux kernel 5.15 through 5.18 before 5.18.18. fs/ksmbd/smb2pdu.c lacks length validation in the non-padding case in smb2_write.

CVSS vector

CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:HExploitability: 2.8 | Impact: 5.2

Affected Packages6 packages

NVDlinux/linux_kernel5.155.15.145+1
Debianlinux/linux_kernel< 5.19.6-1+2
Ubuntulinux/linux_kernel< 5.15.0-60.66
debiandebian/linux< linux 5.19.6-1 (bookworm)

Patches

🔴Vulnerability Details

6
OSV
linux-gke-5.15 vulnerabilities2023-02-15
OSV
linux-aws, linux-aws-5.15, linux-azure-fde, linux-gcp, linux-gcp-5.15, linux-intel-iotg vulnerabilities2023-02-15
OSV
linux, linux-azure, linux-azure-5.15, linux-gkeop, linux-hwe-5.15, linux-ibm, linux-kvm, linux-lowlatency, linux-lowlatency-hwe-5.15, linux-oracle, linux-oracle-5.15, linux-raspi vulnerabilities2023-02-09
OSV
linux-gke vulnerabilities2023-02-09
GHSA
GHSA-7q73-76jf-54wg: An issue was discovered in ksmbd in the Linux kernel before 52022-12-23

📋Vendor Advisories

7
Ubuntu
Linux kernel vulnerabilities2023-02-15
Ubuntu
Linux kernel (GKE) vulnerabilities2023-02-15
Ubuntu
Linux kernel vulnerabilities2023-02-09
Ubuntu
Linux kernel (GKE) vulnerabilities2023-02-09
Red Hat
kernel: smb2_write() fails to validate user supplied data which can result in out-of-bounds read2022-12-22