CVE-2023-4515

Source
https://cve.org/CVERecord?id=CVE-2023-4515
Import Source
https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2023-4515.json
JSON Data
https://api.test.osv.dev/v1/vulns/CVE-2023-4515
Downstream
Related
Published
2025-08-16T13:25:50.562Z
Modified
2026-03-20T12:30:46.742898Z
Summary
ksmbd: validate command request size
Details

In the Linux kernel, the following vulnerability has been resolved:

ksmbd: validate command request size

In commit 2b9b8f3b68ed ("ksmbd: validate command payload size"), except for SMB2OPLOCKBREAK_HE command, the request size of other commands is not checked, it's not expected. Fix it by add check for request size of other commands.

Database specific
{
    "osv_generated_from": "https://github.com/CVEProject/cvelistV5/tree/main/cves/2023/4xxx/CVE-2023-4515.json",
    "cna_assigner": "Linux"
}
References

Affected packages

Git / git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git

Affected ranges

Type
GIT
Repo
https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git
Events
Introduced
35f450f54dca1519bb24faacd0428db09f89a11f
Fixed
595679098bdcdbfbba91ebe07a2f7f208df93870
Type
GIT
Repo
https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git
Events
Introduced
9650cf70ec9d94ff34daa088b643229231723c26
Fixed
c6bef3bc30fd4a175aef846b7d928a6c40d091cd
Type
GIT
Repo
https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git
Events
Introduced
2b9b8f3b68edb3d67d79962f02e26dbb5ae3808d
Fixed
ff7236b66d69582f90cf5616e63cfc3dc18142bb
Fixed
5aa4fda5aa9c2a5a7bac67b4a12b089ab81fee3c
Type
GIT
Repo
https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git
Events
Introduced
0 Unknown introduced commit / All previous commits are affected
Last affected
768caf4019f0391c0b6452afe34cea1704133f7b

Database specific

source
"https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2023-4515.json"