Lucene search

K
veracodeVeracode Vulnerability DatabaseVERACODE:39121
HistoryFeb 03, 2023 - 11:00 p.m.

Denial Of Service (DoS)

2023-02-0323:00:30
Veracode Vulnerability Database
sca.analysiscenter.veracode.com
21
denial of service
kernel
smb2
vulnerability
cifs
local
attack
software

0.0004 Low

EPSS

Percentile

12.7%

kernel is vulnerable to Denial of Service (DoS) attacks. The vulnerability exists in the smb2_ioctl_query_info function of fs/cifs/smb2ops.c, in Common Internet File System (CIFS) due to an incorrect return from the memdup_user function. This flaw allows a local, privileged attacker to crash the system.