We use these services and cookies to improve your user experience. You may opt out if you wish, however, this may limit some features on this site.

Please see our statement on Data Privacy.

Crisp.chat (Helpdesk and Chat)

Ok

THREATINT
PUBLISHED

CVE-2024-26928

smb: client: fix potential UAF in cifs_debug_files_proc_show()



Description

In the Linux kernel, the following vulnerability has been resolved: smb: client: fix potential UAF in cifs_debug_files_proc_show() Skip sessions that are being teared down (status == SES_EXITING) to avoid UAF.

Reserved 2024-02-19 | Published 2024-04-28 | Updated 2025-05-04 | Assigner Linux

Product status

Default status
unaffected

1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 before 8f8718afd446cd4ea3b62bacc3eec09f8aae85ee
affected

1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 before a140224bcf87eb98a87b67ff4c6826c57e47b704
affected

1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 before 229042314602db62559ecacba127067c22ee7b88
affected

1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 before a65f2b56334ba4dc30bd5ee9ce5b2691b973344d
affected

1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 before 3402faf78b2516b0af1259baff50cc8453ef0bd1
affected

1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 before ca545b7f0823f19db0f1148d59bc5e1a56634502
affected

Default status
affected

5.10.237
unaffected

5.15.180
unaffected

6.1.85
unaffected

6.6.26
unaffected

6.8.5
unaffected

6.9
unaffected

References

git.kernel.org/...c/8f8718afd446cd4ea3b62bacc3eec09f8aae85ee

git.kernel.org/...c/a140224bcf87eb98a87b67ff4c6826c57e47b704

git.kernel.org/...c/229042314602db62559ecacba127067c22ee7b88

git.kernel.org/...c/a65f2b56334ba4dc30bd5ee9ce5b2691b973344d

git.kernel.org/...c/3402faf78b2516b0af1259baff50cc8453ef0bd1

git.kernel.org/...c/ca545b7f0823f19db0f1148d59bc5e1a56634502

cve.org (CVE-2024-26928)

nvd.nist.gov (CVE-2024-26928)

Download JSON

Share this page
https://cve.threatint.eu/CVE/CVE-2024-26928

Support options

Helpdesk Chat, Email, Knowledgebase