In the Linux kernel, the following vulnerability has been resolved: smb/client: zero-initialize stack-allocated cifs_open_info_data Stack-allocated cifs_open_info_data may contain random data. This…
High CVSS 7.0
Summary
In the Linux kernel, the following vulnerability has been resolved: smb/client: zero-initialize stack-allocated cifs_open_info_data Stack-allocated cifs_open_info_data may contain random data. This can make some fields have wrong value if they are not set later.
In-depth triage
No in-depth report has been generated yet (DR-003 v2 AI pipeline is under construction).
Sources
- NVD DATABASE
Original Links
- https://git.kernel.org/stable/c/22532dd88694ed20bdd47523ffa709f166ce776b
- https://git.kernel.org/stable/c/74ff47e6c4213fcfeba2de448d9cbda200507d22
- https://git.kernel.org/stable/c/8fce4cf4369c766a3293a05419500cbfde72e60d
Timeline
- nvd_ingest NVD