VDB
BDU%3A2025-00880
BDU%3A2025-00880
PUBLISHED
CVSS 6.800000190734863 MEDIUM
Уязвимость функции smb2_write() модуля fs/ksmbd/smb2pdu.c, позволяющая нарушителю оказать воздействие на конфиденциальность, целостность и доступность защищаемой информации.
Risk Scores
CVSS 2.0
6.800000190734863
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Canonical Ltd., Сообщество свободного программного обеспечения, ООО «Ред Софт», ООО «РусБИТех-Астра», АО "НППКТ" | Ubuntu, Debian GNU/Linux, РЕД ОС (запись в едином реестре российских программ №3751), Astra Linux Special Edition (запись в едином реестре российских программ №369), Linux, ОСОН ОСнова Оnyx (запись в едином реестре российских программ №5913) |
Timeline
- Jan 29, 2025 CVE Published
- Oct 29, 2025 CVE Updated
References
- https://git.kernel.org/linus/313dab082289e460391c82d855430ec8a28ddf81 url
- https://git.kernel.org/stable/c/164d3597d26d9acff5d5b8bc3208bdcca942dd6a url
- https://git.kernel.org/stable/c/1aea5c9470be2c7129704fb1b9562b1e3e0576f8 url
- https://git.kernel.org/stable/c/313dab082289e460391c82d855430ec8a28ddf81 url
- https://git.kernel.org/stable/c/8cd7490fc0f268883e86e840cda5311257af69ca url
- https://git.kernel.org/stable/c/c5797f195c67132d061d29c57a7c6d30530686f0 url
- https://github.com/advisories/GHSA-g4vc-rr66-6355 url
- https://kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.15.176 url
- https://kernel.org/pub/linux/kernel/v6.x/ChangeLog-6.1.120 url
- https://kernel.org/pub/linux/kernel/v6.x/ChangeLog-6.12.5 url
- https://kernel.org/pub/linux/kernel/v6.x/ChangeLog-6.6.66 url
- https://lore.kernel.org/linux-cve-announce/2024122712-CVE-2024-56626-f2f9@gregkh/ url
- https://nvd.nist.gov/vuln/detail/CVE-2024-56626 url
- https://securityonline.info/cve-2024-56626-cve-2024-56627-critical-linux-kernel-smb-server-bugs-uncovered-poc-published/ url
- https://security-tracker.debian.org/tracker/CVE-2024-56626 url
- https://ubuntu.com/security/CVE-2024-56626 url
- https://www.cve.org/CVERecord?id=CVE-2024-56626 url
- https://www.suse.com/security/cve/CVE-2024-56626.html url
- https://wiki.astralinux.ru/astra-linux-se18-bulletin-2025-0411SE18 url
- http://repo.red-soft.ru/redos/7.3c/x86_64/updates/ url
…and 3 more