Database/Kernel, userspace & hypervisor
Linux kernel (ksmbd): Use-after-free in ksmbd_tcp_new_connection() - in-kernel SMB server
CVSS 7.8CVE-2024-26592Kernel, userspace & hypervisorcurated
Impact
Use-after-free in ksmbd_tcp_new_connection() - in-kernel SMB server
Who can reach it
Unauthenticated network (if ksmbd is exposed)
What to do
Livepatchable; otherwise drain + reboot. Correct answer for a neocloud is to not ship ksmbd at all - blacklist the module fleet-wide
References
Related entries
- Linux kernel (ksmbd): Use-after-free in ksmbd session logoff (found by an LLM-assisted audit)CVE-2025-37899 · Linux kernel (ksmbd)Medium
- Linux kernel (drivers/iommu/iommufd): On a partially-failed access attach, iommufd overwrites the xarray id that tracksCVE-2024-26786 · Linux kernel (drivers/iommu/iommufd)High
- Linux kernel (drivers/vfio/pci): A tenant races a DisINTx write to emulated config space against a SET_IRQS ioctl, soCVE-2024-26810 · Linux kernel (drivers/vfio/pci)High
- Linux kernel (drivers/vfio/pci): A tenant holding a passthrough PCI device can make the kernel signal an interruptCVE-2024-26812 · Linux kernel (drivers/vfio/pci)High
- Linux kernel (drivers/gpu/drm): The shared VRAM buddy allocator reports success for a ranged allocation it neverCVE-2024-26911 · Linux kernel (drivers/gpu/drm)High
- Linux i915 GPU kernel driver: A use-after-free in the i915 GPU kernel driver. The general shape is that a GPU object isCVE-2024-26939 · Linux i915 GPU kernel driverHigh
This entry is curated: imported from vendor advisories with machine assistance, not yet individually verified. Confirm against your vendor's advisory before acting, and report anything wrong.