ACK: [UBUNTU Jammy 0/1] CVE-2022-47940

Cengiz Can cengiz.can at canonical.com
Wed Jan 4 15:12:27 UTC 2023


On 23-01-03 11:32:50, Thadeu Lima de Souza Cascardo wrote:
> [Impact]
> A ksmbd authenticated attacker can exploit an out-of-bounds read to
> potentially leak system information.
> 
> [Potential regression]
> ksmbd may regress.
> 
> Marios Makassikis (1):
>   ksmbd: validate length in smb2_write()

Acked-by: Cengiz Can <cengiz.can at canonical.com>

> 
>  fs/ksmbd/smb2pdu.c | 42 ++++++++++++++++--------------------------
>  1 file changed, 16 insertions(+), 26 deletions(-)
> 
> -- 
> 2.34.1
> 
> 
> -- 
> kernel-team mailing list
> kernel-team at lists.ubuntu.com
> https://lists.ubuntu.com/mailman/listinfo/kernel-team



More information about the kernel-team mailing list