VDB
BDU%3A2025-00148
BDU%3A2025-00148
PUBLISHED
CVSS 6 MEDIUM
Уязвимость функции ksmbd_expire_session() в модуле fs/smb/server/mgmt/user_session.c внутриядерного CIFS/SMB3-сервера ksmbd server ядра операционной системы Linux, позволяющая нарушителю оказать воздействие на конфиденциальность, целостность и доступность защищаемой информации
Risk Scores
CVSS 2.0
6
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Canonical Ltd., Сообщество свободного программного обеспечения, ООО «РусБИТех-Астра», АО "НППКТ" | Ubuntu, Debian GNU/Linux, Astra Linux Special Edition (запись в едином реестре российских программ №369), Linux, ОСОН ОСнова Оnyx (запись в едином реестре российских программ №5913) |
Timeline
- Jan 13, 2025 CVE Published
- Oct 24, 2025 CVE Updated
References
- https://git.kernel.org/stable/c/e7a2ad2044377853cf8c59528dac808a08a99c72 url
- https://git.kernel.org/stable/c/e923503a56b3385b64ae492e3225e4623f560c5b url
- https://git.kernel.org/stable/c/f56446ba5378d19e31040b548a14ee9a8f1500ea url
- https://git.kernel.org/stable/c/0a77715db22611df50b178374c51e2ba0d58866e url
- https://www.cve.org/CVERecord?id=CVE-2024-50286 url
- https://git.kernel.org/linus/0a77715db22611df50b178374c51e2ba0d58866e url
- https://git.linuxtesting.ru/pub/scm/linux/kernel/git/lvc/linux-stable.git/commit/?h=v6.1.118-lvc9&id=f56446ba5378d19e31040b548a14ee9a8f1500ea url
- https://lore.kernel.org/linux-cve-announce/2024111948-CVE-2024-50286-85e9@gregkh/ url
- https://kernel.org/pub/linux/kernel/v6.x/ChangeLog-6.1.117 url
- https://kernel.org/pub/linux/kernel/v6.x/ChangeLog-6.6.61 url
- https://kernel.org/pub/linux/kernel/v6.x/ChangeLog-6.11.8 url
- https://security-tracker.debian.org/tracker/CVE-2024-50286 url
- https://ubuntu.com/security/CVE-2024-50286 url
- https://t.me/teamdarkarmy/2780 url
- https://wiki.astralinux.ru/astra-linux-se18-bulletin-2025-0411SE18 url
- https://поддержка.нппкт.рф/bin/view/ОСнова/Обновления/2.14/ url