Kernel: out-of-bounds read vulnerability in smbcalcsize
CVE-2023-6606

7.1HIGH

Summary

An out-of-bounds read vulnerability was found in smbCalcSize in fs/smb/client/netmisc.c in the Linux Kernel. This issue could allow a local attacker to crash the system or leak internal kernel information.

Affected Version(s)

Red Hat Enterprise Linux 8 0:4.18.0-513.18.1.rt7.320.el8_9

Red Hat Enterprise Linux 8 0:4.18.0-513.18.1.el8_9

Red Hat Enterprise Linux 8.6 Extended Update Support 0:4.18.0-372.95.1.el8_6

References

CVSS V3.1

Score:
7.1
Severity:
HIGH
Confidentiality:
High
Integrity:
None
Availability:
High
Attack Vector:
Local
Attack Complexity:
Low
Privileges Required:
Low
User Interaction:
None
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

Collectors

NVD DatabaseMitre Database
.