First published: Fri Dec 23 2022(Updated: )
An issue was discovered in ksmbd in the Linux kernel 5.15 through 5.19 before 5.19.2. fs/ksmbd/smb2pdu.c omits a kfree call in certain smb2_handle_negotiate error conditions, aka a memory leak.
Credit: cve@mitre.org cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Linux Linux kernel | >=5.15<5.15.61 | |
Linux Linux kernel | >=5.16<5.18.18 | |
Linux Linux kernel | >=5.19<5.19.2 | |
Linux kernel | ||
>=5.15<5.15.61 | ||
>=5.16<5.18.18 | ||
>=5.19<5.19.2 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2022-47941 is a vulnerability in the Linux Kernel that allows remote attackers to create a denial-of-service condition.
No, authentication is not required to exploit CVE-2022-47941.
The severity of CVE-2022-47941 is high, with a CVSS score of 7.5.
Versions of Linux Kernel between 5.15 and 5.15.61, between 5.16 and 5.18.18, and between 5.19 and 5.19.2 are affected by CVE-2022-47941.
To fix CVE-2022-47941, update your Linux Kernel to a version that is not affected by the vulnerability.