All CVEs — page 189 of 242
The complete archive, 25 per page, newest first. 6034 records. Search instead.
The flaw involves a use-after-free vulnerability in the Linux kernel's SMB direct (smbdirect) component, specifically related to completion queues (CQs) not being properly cancelled before being freed, leading to potential kernel crashes or exploits.
This flaw allows a race condition where a concurrent UNLOCK request can free a ksmbd_lock structure that is still being tracked, leading to a Use-After-Free and Double-Free vulnerability.