ID:11976 - Exploit for Memory corruption in Linux kernel - CVE-2023-52440

 
Main Vulnerability Database Exploits ID:11976 - Exploit for Memory corruption in Linux kernel - CVE-2023-52440

ID:11976 - Exploit for Memory corruption in Linux kernel - CVE-2023-52440

Published: September 19, 2025


Vulnerability identifier: #VU92398
Vulnerability risk: Low
CVE-ID: CVE-2023-52440
CWE-ID: CWE-119
Exploitation vector: Local access
Vulnerable software:
Linux kernel

Link to public exploit:


Vulnerability description

The vulnerability allows a local user to execute arbitrary code.

The vulnerability exists due to memory corruption error within the ksmbd_decode_ntlmssp_auth_blob() function in fs/ksmbd/auth.c. A local user can execute arbitrary code.


Remediation

Install update from vendor's repository.