Linux kernel
cpe:2.3:a:linux:linux_kernel:*:*:*:*:*:*:*, +4 more
A race condition vulnerability has been identified in the Linux kernel's SMB client implementation. This issue arises in the 'open_cached_dir' function, where a valid 'cfid' (cached file identifier) may incorrectly be treated as new due to a lease break. If the 'cfid' is allocated before the lease break is processed, it can lead to a reference leak of the directory entry. The vulnerability affects the handling of cached directories in relation to lease management, potentially causing inconsistencies in directory reference counting.
Exploitation of this vulnerability can lead to a directory entry reference leak, which may cause memory management issues or inconsistencies in the handling of cached directory entries.
Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.