We use these services and cookies to improve your user experience. You may opt out if you wish, however, this may limit some features on this site.

Please see our statement on Data Privacy.

Crisp.chat (Helpdesk and Chat)

Ok

THREATINT
PUBLISHED

CVE-2025-21946

ksmbd: fix out-of-bounds in parse_sec_desc()



Description

In the Linux kernel, the following vulnerability has been resolved: ksmbd: fix out-of-bounds in parse_sec_desc() If osidoffset, gsidoffset and dacloffset could be greater than smb_ntsd struct size. If it is smaller, It could cause slab-out-of-bounds. And when validating sid, It need to check it included subauth array size.

Reserved 2024-12-29 | Published 2025-04-01 | Updated 2025-05-04 | Assigner Linux

Product status

Default status
unaffected

0626e6641f6b467447c81dd7678a69c66f7746cf before c1569dbbe2d43041be9f3fef7ca08bec3b66ad1b
affected

0626e6641f6b467447c81dd7678a69c66f7746cf before 159d059cbcb0e6d0e7a7b34af3862ba09a6b22d1
affected

0626e6641f6b467447c81dd7678a69c66f7746cf before 6a9831180d0b23b5c97e2bd841aefc8f82900172
affected

0626e6641f6b467447c81dd7678a69c66f7746cf before d6e13e19063db24f94b690159d0633aaf72a0f03
affected

Default status
affected

5.15
affected

Any version before 5.15
unaffected

6.6.83
unaffected

6.12.19
unaffected

6.13.7
unaffected

6.14
unaffected

References

git.kernel.org/...c/c1569dbbe2d43041be9f3fef7ca08bec3b66ad1b

git.kernel.org/...c/159d059cbcb0e6d0e7a7b34af3862ba09a6b22d1

git.kernel.org/...c/6a9831180d0b23b5c97e2bd841aefc8f82900172

git.kernel.org/...c/d6e13e19063db24f94b690159d0633aaf72a0f03

cve.org (CVE-2025-21946)

nvd.nist.gov (CVE-2025-21946)

Download JSON

Share this page
https://cve.threatint.eu/CVE/CVE-2025-21946

Support options

Helpdesk Chat, Email, Knowledgebase