In the Linux kernel, the following vulnerability has been resolved: cifs: Fix UAF in cifs_demultiplex_thread() There is a UAF when xfstests on cifs: BUG: KASAN: use-after-free in smb2_is_network…
High CVSS 7.8
Summary
In the Linux kernel, the following vulnerability has been resolved: cifs: Fix UAF in cifs_demultiplex_thread() There is a UAF when xfstests on cifs: BUG: KASAN: use-after-free in smb2_is_network_name_deleted+0x27/0x160 Read of size 4 at addr ffff88810103fc08 by task cifsd/923 CPU: 1 PID: 923 Comm: cifsd Not tainted 6.1.0-rc4+ #45 ... Call Trace: <TASK> dump_stack_lvl+0x34/0x44 print_report+0x171/0x472 kasan_report+0xad/0x130 kasan_check_range+0x145/0x1a0 smb2_is_…
In-depth triage · Auto channel
No in-depth report has been generated yet (DR-003 v2 AI pipeline is under construction).
Affected products
- :
Sources
- NVD DATABASE
Original Links
- https://git.kernel.org/stable/c/76569e3819e0bb59fc19b1b8688b017e627c268a Patch
- https://git.kernel.org/stable/c/908b3b5e97d25e879de3d1f172a255665491c2c3 Patch
- https://git.kernel.org/stable/c/99960d282fba6634fa758df4124cb73ef8a77d8a Patch
- https://git.kernel.org/stable/c/d527f51331cace562393a8038d870b3e9916686f Patch
- https://git.kernel.org/stable/c/ed3b36f351d97dacb62cd0f399e8cf79f73bd30a Patch
- https://git.kernel.org/stable/c/fe87e2d0e6265859c659a3ef1e2559a83c5e8e68 Patch
- https://git.kernel.org/stable/c/76569e3819e0bb59fc19b1b8688b017e627c268a Patch
- https://git.kernel.org/stable/c/908b3b5e97d25e879de3d1f172a255665491c2c3 Patch
- https://git.kernel.org/stable/c/d527f51331cace562393a8038d870b3e9916686f Patch
- https://lists.debian.org/debian-lts-announce/2025/05/msg00030.html Mailing List
Timeline
- nvd_ingest NVD