« List of all CVEs

CVE-2025-21946

ksmbd: fix out-of-bounds in parse_sec_desc()

Published: 4/1/2025 Last updated: 5/4/2025 Reserved: 12/29/2024

In the Linux kernel, the following vulnerability has been resolved: ksmbd: fix out-of-bounds in parse_sec_desc() If osidoffset, gsidoffset and dacloffset could be greater than smb_ntsd struct size. If it is smaller, It could cause slab-out-of-bounds. And when validating sid, It need to check it included subauth array size.

CNA assigner: Linux (416baaa9-dc9f-4396-8d5f-8c081fb06d67) Requested by: n/a

Opam packages affected (10)

conf-bpftool conf-libbpf conf-linux-libc-dev hvsock mirage-block-unix solo5 solo5-bindings-hvt solo5-bindings-spt solo5-cross-aarch64 solo5-kernel-ukvm

Products affected (2)

Product Vendor Version
Linux Linux < 8d5cff499a6d740c91ff37963907e0e983c37f0f
Linux Linux n/a

References (4)