CVE-2023-3865

HIGH EPSS 29.3%
Published Aug 16, 202510mo ago · Modified Jun 17, 20261w ago
7.1 CVSS 3.1
High
Find Similar
Published Aug 16, 2025 10mo ago
Last Modified Jun 17, 2026 1w ago

Description

In the Linux kernel, the following vulnerability has been resolved: ksmbd: fix out-of-bound read in smb2_write ksmbd_smb2_check_message doesn't validate hdr->NextCommand. If ->NextCommand is bigger than Offset + Length of smb2 write, It will allow oversized smb2 write length. It will cause OOB read in smb2_write.

CVSS Details

Base Score
7.1
Exploitability
1.8
Impact
5.2
Vector string
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:H
Attack Vector Local
Attack Complexity Low
Privileges Required Low
User Interaction None
Scope Unchanged
Confidentiality High
Integrity None
Availability High

Threat Intelligence

EPSS Exploit Probability
29.3% percentile
Exploit & Patch Status
No Known Exploit
Patch Available

Weaknesses 1

CWE-125 Out-of-bounds Read Memory Safety

Affected Products 10

VendorProductVersionRange
linuxlinux_kernel*≥5.15  –  <5.15.121
linuxlinux_kernel*≥5.16  –  <6.1.36
linuxlinux_kernel*≥6.2  –  <6.3.10
linuxlinux_kernel6.4any
linuxlinux_kernel6.4any
linuxlinux_kernel6.4any
linuxlinux_kernel6.4any
linuxlinux_kernel6.4any
linuxlinux_kernel6.4any
linuxlinux_kernel6.4any

References 4

  • git.kernel.org https://git.kernel.org/stable/c/3813eee5154d6a4c5875cb4444cb2b63bac8947f
    Patch
  • git.kernel.org https://git.kernel.org/stable/c/58a9c41064df27632e780c5a3ae3e0e4284957d1
    Patch
  • git.kernel.org https://git.kernel.org/stable/c/5fe7f7b78290638806211046a99f031ff26164e1
    Patch
  • git.kernel.org https://git.kernel.org/stable/c/c86211159bc3178b891e0d60e586a32c7b6a231b
    Patch

Remediation

  • git.kernel.org https://git.kernel.org/stable/c/3813eee5154d6a4c5875cb4444cb2b63bac8947f
    Patch
  • git.kernel.org https://git.kernel.org/stable/c/58a9c41064df27632e780c5a3ae3e0e4284957d1
    Patch
  • git.kernel.org https://git.kernel.org/stable/c/5fe7f7b78290638806211046a99f031ff26164e1
    Patch
  • git.kernel.org https://git.kernel.org/stable/c/c86211159bc3178b891e0d60e586a32c7b6a231b
    Patch