An issue was discovered in ksmbd in the Linux kernel 5.15 through 5.18 before 5.18.18. fs/ksmbd/smb2pdu.c lacks length validation in the non-padding case in smb2_write.
Advisories
Source ID Title
EUVD EUVD EUVD-2022-50673 An issue was discovered in ksmbd in the Linux kernel 5.15 through 5.18 before 5.18.18. fs/ksmbd/smb2pdu.c lacks length validation in the non-padding case in smb2_write.
Ubuntu USN Ubuntu USN USN-5851-1 Linux kernel vulnerabilities
Ubuntu USN Ubuntu USN USN-5860-1 Linux kernel (GKE) vulnerabilities
Ubuntu USN Ubuntu USN USN-5876-1 Linux kernel vulnerabilities
Ubuntu USN Ubuntu USN USN-5877-1 Linux kernel (GKE) vulnerabilities
Fixes

Solution

No solution given by the vendor.


Workaround

No workaround given by the vendor.

History

Mon, 14 Apr 2025 19:15:00 +0000

Type Values Removed Values Added
Metrics ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'none', 'Technical Impact': 'partial'}, 'version': '2.0.3'}


Projects

Sign in to view the affected projects.

cve-icon MITRE

Status: PUBLISHED

Assigner: mitre

Published:

Updated: 2025-04-14T18:37:29.993Z

Reserved: 2022-12-23T00:00:00.000Z

Link: CVE-2022-47940

cve-icon Vulnrichment

Updated: 2024-08-03T15:02:36.526Z

cve-icon NVD

Status : Modified

Published: 2022-12-23T16:15:12.533

Modified: 2025-04-14T19:15:33.080

Link: CVE-2022-47940

cve-icon Redhat

Severity : Critical

Publid Date: 2022-12-22T00:00:00Z

Links: CVE-2022-47940 - Bugzilla

cve-icon OpenCVE Enrichment

No data.

Weaknesses