VDB
DEBIAN-CVE-2023-4515
DEBIAN-CVE-2023-4515
PUBLISHED
CVSS 5.5 MEDIUM
In the Linux kernel, the following vulnerability has been resolved: ksmbd: validate command request size In commit 2b9b8f3b68ed ("ksmbd: validate command payload size"), except for SMB2_OPLOCK_BREAK_HE command, the request size of other commands is not checked, it's not expected. Fix it by add check for request size of other commands.
Risk Scores
CVSS 3.1
5.5
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Debian:13 | linux | 0, 0, 0 |
| Debian:12 | linux | 6.1.27-1, 6.1.38-1, 6.1.38-2 |
| Debian:14 | linux | 0, 0, 0 |
Timeline
- Aug 16, 2025 CVE Published
- Apr 28, 2026 CVE Updated