Fiche vulnérabilité
CVE-2024-0565 : faille élevée linux linux kernel (CVSS 7.4)
Description
An out-of-bounds memory read flaw was found in receive_encrypted_standard in fs/smb/client/smb2ops.c in the SMB Client sub-component in the Linux Kernel. This issue occurs due to integer underflow on the memcpy length, leading to a denial of service.
En bref
- Sévérité
- Élevée (CVSS 7.4)
- Vecteur CVSS
- CVSS:3.1/AV:A/AC:L/PR:L/UI:R/S:U/C:H/I:H/A:H
- Exploitation active
- Non signalée par la CISA
- Publication
- 15 janv. 2024
- Dernière mise à jour
- 10 août 2026
Produits concernés
- linux linux kernel
- netapp ontap tools
Références
- Fiche CVE-2024-0565 sur le NVD (NIST)
- access.redhat.com/errata/RHSA-2024:1188
- access.redhat.com/errata/RHSA-2024:1404
- access.redhat.com/errata/RHSA-2024:1532
- access.redhat.com/errata/RHSA-2024:1533
- access.redhat.com/errata/RHSA-2024:1607
- access.redhat.com/errata/RHSA-2024:1614
- access.redhat.com/errata/RHSA-2024:2093
- access.redhat.com/errata/RHSA-2024:2394
- access.redhat.com/security/cve/CVE-2024-0565
- bugzilla.redhat.com/show_bug.cgi
- spinics.net/lists/stable-commits/msg328851.html
- lists.debian.org/debian-lts-announce/2024/06/msg00017.html
- security.netapp.com/advisory/ntap-20240223-0002/