#VU77497 Race condition in Linux kernel - CVE-2023-32250
Published: June 19, 2023
Linux kernel
Linux Foundation
Description
The vulnerability allows a remote attacker to compromise the affected system.
The vulnerability exists due to a race condition within the fs/ksmbd/connection.c in ksmbd in Linux kernel when processing SMB2_SESSION_SETUP commands. A remote attacker can exploit the race by sending concurrent session setup and logoff request and execute arbitrary code on the system.