CVE-2023-52755

Source
https://cve.org/CVERecord?id=CVE-2023-52755
Import Source
https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2023-52755.json
JSON Data
https://api.test.osv.dev/v1/vulns/CVE-2023-52755
Downstream
Published
2024-05-21T15:30:42.898Z
Modified
2026-04-11T12:46:35.619903Z
Severity
  • 8.4 (High) CVSS_V3 - CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H CVSS Calculator
Summary
ksmbd: fix slab out of bounds write in smb_inherit_dacl()
Details

In the Linux kernel, the following vulnerability has been resolved:

ksmbd: fix slab out of bounds write in smbinheritdacl()

slab out-of-bounds write is caused by that offsets is bigger than pntsd allocation size. This patch add the check to validate 3 offsets using allocation size.

Database specific
{
    "osv_generated_from": "https://github.com/CVEProject/cvelistV5/tree/main/cves/2023/52xxx/CVE-2023-52755.json",
    "cna_assigner": "Linux"
}
References

Affected packages

Git / git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git

Affected ranges

Type
GIT
Repo
https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git
Events
Introduced
0626e6641f6b467447c81dd7678a69c66f7746cf
Fixed
aaf0a07d60887d6c36fc46a24de0083744f07819
Fixed
8387c94d73ec66eb597c7a23a8d9eadf64bfbafa
Fixed
09d9d8b40a3338193619c14ed4dc040f4f119e70
Fixed
712e01f32e577e7e48ab0adb5fe550646a3d93cb
Fixed
eebff19acaa35820cb09ce2ccb3d21bee2156ffb

Database specific

source
"https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2023-52755.json"

Linux / Kernel

Package

Name
Kernel

Affected ranges

Type
ECOSYSTEM
Events
Introduced
5.15.0
Fixed
5.15.140
Type
ECOSYSTEM
Events
Introduced
5.16.0
Fixed
6.1.64
Type
ECOSYSTEM
Events
Introduced
6.2.0
Fixed
6.5.13
Type
ECOSYSTEM
Events
Introduced
6.6.0
Fixed
6.6.3

Database specific

source
"https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2023-52755.json"