UBUNTU-CVE-2023-3865
Dashboard / Vulnerabilities / UBUNTU-CVE-2023-3865
UBUNTU-CVE-2023-3865
Summary:
Details: In the Linux kernel, the following vulnerability has been resolved: ksmbd: fix out-of-bound read in smb2_write ksmbd_smb2_check_message doesn't validate hdr->NextCommand. If ->NextCommand is bigger than Offset + Length of smb2 write, It will allow oversized smb2 write length. It will cause OOB read in smb2_write.
References: https://ubuntu.com/security/CVE-2023-3865, https://www.zerodayinitiative.com/advisories/ZDI-23-980/, https://git.kernel.org/linus/5fe7f7b78290638806211046a99f031ff26164e1, https://lore.kernel.org/all/[email protected]/, https://ubuntu.com/security/notices/USN-6416-1, https://ubuntu.com/security/notices/USN-6416-2, https://ubuntu.com/security/notices/USN-6416-3, https://ubuntu.com/security/notices/USN-6445-1, https://ubuntu.com/security/notices/USN-6445-2, https://ubuntu.com/security/notices/USN-6464-1, https://ubuntu.com/security/notices/USN-6466-1, https://ubuntu.com/security/notices/USN-6520-1, https://www.cve.org/CVERecord?id=CVE-2023-3865
Affected packages
Package
Name: linux-hwe-edge
Purl: pkg:deb/ubuntu/linux-hwe-edge?arch=source&distro=xenial
Affected ranges
Type: ECOSYSTEM
Events:
