CVE Database
/

CVE-2024-26952

Back to search

CVE-2024-26952

Published: May 1, 2024

Modified: May 11, 2026

PUBLISHED

Description

In the Linux kernel, the following vulnerability has been resolved: ksmbd: fix potencial out-of-bounds when buffer offset is invalid I found potencial out-of-bounds when buffer offset fields of a few requests is invalid. This patch set the minimum value of buffer offset field to ->Buffer offset to validate buffer length.

VendorProductVersions

Linux

Linux

affected
0626e6641f6b467447c81dd7678a69c66f7746cf - < 480469f145e5abf83361e608734e421b7d99693d
affected
0626e6641f6b467447c81dd7678a69c66f7746cf - < ad6480c9a5d884e2704adc51d69895d93339176c
affected
0626e6641f6b467447c81dd7678a69c66f7746cf - < 39bdc4197acf2ed13269167ccf093ee28cfa2a4e
affected
0626e6641f6b467447c81dd7678a69c66f7746cf - < 2dcda336b6e80b72d58d30d40f2fad9724e5fe63
affected
0626e6641f6b467447c81dd7678a69c66f7746cf - < 0c5541b4c980626fa3cab16ba1a451757778bbb5

+1 more versions

Linux

Linux

affected
5.15
unaffected
0 - < 5.15
unaffected
5.15.181 - <= 5.15.*
unaffected
6.1.119 - <= 6.1.*
unaffected
6.6.32 - <= 6.6.*

+3 more versions

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now