← Back

CVE-2024-22705

nvd nist
Published: Jan 23, 2024Modified: Jun 17, 2026

JSON object

Loading...
7.8
Vector
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Exploitability: 1.8 / Impact: 5.9
Source: NVD

Description

An issue was discovered in ksmbd in the Linux kernel before 6.6.10. smb2_get_data_area_len in fs/smb/server/smb2misc.c can cause an smb_strndup_from_utf16 out-of-bounds access because the relationship between Name data and CreateContexts data is mishandled.

Affected (8)

Products: Linux: Linux Kernel
1 product
Linux Kernel
Configuration A
8 vulnerable
Vulnerable SoftwareAffected Versions
Linux
Before 6.6.10
Version 6.7 rc1
Version 6.7 rc2
Version 6.7 rc3
Version 6.7 rc4
Version 6.7 rc5
Version 6.7 rc6
Version 6.7 rc7

Timeline

No history available yet.