← العودة للجدول
CVE-2026-23427
CVE-2026-23427 — In the Linux kernel, the following vulnerability has been resolved: ksmbd: fix
📅 2026-04-03
🔴 Critical 🔥 No NVD Exploit iOS CVSS 9.8 🎯 EPSS 0.04%

📋 الوصف الكامل

In the Linux kernel, the following vulnerability has been resolved: ksmbd: fix use-after-free in durable v2 replay of active file handles parse_durable_handle_context() unconditionally assigns dh_info->fp->conn to the current connection when handling a DURABLE_REQ_V2 context with SMB2_FLAGS_REPLAY_OPERATION. ksmbd_lookup_fd_cguid() does not filter by fp->conn, so it returns file handles

💻 الأنظمة المتأثرة

Linux Kernel 6.x/5.15 LTS | Ubuntu 22.04/20.04 LTS

⚠️ نوع التهديد

Exploit

🔗 CVE ID

CVE-2026-23427

📡 المصدر

NVD

✅ الحلول والتخفيف

Refer to CVE-2026-23427 NVD advisory

🔗 المصدر الأصلي ← 📘 NVD ← ⚡ CISA KEV ←