← العودة للجدول
CVE-2026-23428
CVE-2026-23428 — In the Linux kernel, the following vulnerability has been resolved: ksmbd: fix
📅 2026-04-03
🔴 Critical 🔥 No NVD Exploit Exploit CVSS 9.8 🎯 EPSS 0.03%

📋 الوصف الكامل

In the Linux kernel, the following vulnerability has been resolved: ksmbd: fix use-after-free of share_conf in compound request smb2_get_ksmbd_tcon() reuses work->tcon in compound requests without validating tcon->t_state. ksmbd_tree_conn_lookup() checks t_state == TREE_CONNECTED on the initial lookup path, but the compound reuse path bypasses this check entirely. If a prior command in th

💻 الأنظمة المتأثرة

Linux Kernel

⚠️ نوع التهديد

Exploit

🔗 CVE ID

CVE-2026-23428

📡 المصدر

NVD

✅ الحلول والتخفيف

Refer to CVE-2026-23428 NVD advisory

🔗 المصدر الأصلي ← 📘 NVD ← ⚡ CISA KEV ←