An issue was discovered in ksmbd in the Linux kernel 5.15 through 5.19 before 5.19.2. There is a heap-based buffer overflow in setntacldacl, related to use of SMB2QUERYINFOHE after a malformed SMB2SETINFOHE command.
{
"unresolved_ranges": [
{
"extracted_events": [
{
"fixed": "5.19.2"
}
],
"source": "DESCRIPTION"
}
],
"osv_generated_from": "https://github.com/CVEProject/cvelistV5/tree/main/cves/2022/47xxx/CVE-2022-47942.json",
"cna_assigner": "mitre"
}{
"extracted_events": [
{
"introduced": "5.15"
},
{
"fixed": "5.19"
}
],
"source": "DESCRIPTION"
}