First published: Fri Dec 23 2022(Updated: )
An issue was discovered in ksmbd in the Linux kernel 5.15 through 5.19 before 5.19.2. fs/ksmbd/smb2pdu.c has a use-after-free and OOPS for SMB2_TREE_DISCONNECT.
Credit: cve@mitre.org cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Red Hat Kernel-devel | ||
Linux Kernel | >=5.15<5.15.61 | |
Linux Kernel | >=5.16<5.18.18 | |
Linux Kernel | >=5.19<5.19.2 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2022-47939 has a high severity rating due to the potential for remote code execution by attackers.
To fix CVE-2022-47939, update your Linux kernel to version 5.19.2 or later.
CVE-2022-47939 affects Linux kernel versions from 5.15 up to 5.19.1.
Yes, CVE-2022-47939 can be exploited remotely, allowing attackers to execute arbitrary code.
CVE-2022-47939 impacts the ksmbd component of the Linux kernel.