Linux Kernel ksmbd Out-of-Bounds Vulnerability in Security Descriptor Parsing

Vulnerability

A vulnerability in the Linux kernel's ksmbd component was introduced during the parsing of security descriptors. The issue arises because offsets could exceed the size of the security descriptor structure, leading to a slab-out-of-bounds condition. Additionally, the validation of security identifiers (SIDs) did not properly account for the size of the sub-authority array.

Impact

Exploitation of this vulnerability could lead to a slab-out-of-bounds condition, potentially allowing for memory corruption or other unintended behavior.

Added: Jun 9, 2025, 7:46 PM
Updated: Jun 9, 2025, 7:46 PM

Vulnerability Rating

Custom Algorithm
spread
9.0
impact
2.5
exploitability
5.3
remediation
0.0
relevance
0.0
threat
3.2
urgency
2.9
incentive
1.7

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.