Database/Kernel, userspace & hypervisor
Linux kernel (ksmbd): Use-after-free in ksmbd_tcp_new_connection() - in-kernel SMB server
CVE-2024-26592Kernel, userspace & hypervisorcurated
Impact
Use-after-free in ksmbd_tcp_new_connection() - in-kernel SMB server
Who can reach it
Unauthenticated network (if ksmbd is exposed)
What to do
Livepatchable; otherwise drain + reboot. Correct answer for a neocloud is to not ship ksmbd at all - blacklist the module fleet-wide
References
This entry is curated: imported from vendor advisories with machine assistance, not yet individually verified. Confirm against your vendor's advisory before acting, and report anything wrong.