Overview
About vulnerability
In the Linux kernel, the following vulnerability has been resolved:
ksmbd: fix Out-of-Bounds Write in ksmbd_vfs_stream_write
An offset from client could be a negative value, It could allows to write data outside the bounds of the allocated buffer. Note that this issue is coming when setting ‘vfs objects = streams_xattr parameter’ in ksmbd.conf.
Details
KernelCare state
Live-patch status from KernelCare for each operating system.
| Operating system | Status | Covered kernels |
|---|---|---|
| Debian 12 | Planned | — |
| Oracle Linux 8 UEK 7 | Released |
53 kernels
|
| Oracle Linux 9 UEK 7 | Released |
53 kernels
|
| Proxmox VE 7 5.15 | Released |
47 kernels
|
| Ubuntu 20.04 HWE AWS | Released |
52 kernels
|
| Ubuntu 20.04 HWE Azure | Released |
36 kernels
|
| Ubuntu 22.04 | Released |
69 kernels
|
| Ubuntu 22.04 AWS | Released |
60 kernels
|
| Ubuntu 22.04 Azure | Released |
56 kernels
|
| Ubuntu 24.04 | Released |
20 kernels
|
| Ubuntu 24.04 AWS | Ready For Release | — |