๐Ÿ” CVE Alert

CVE-2024-50086

HIGH 7.8

ksmbd: fix user-after-free from session log off

CVSS Score
7.8
EPSS Score
0.0%
EPSS Percentile
0th

In the Linux kernel, the following vulnerability has been resolved: ksmbd: fix user-after-free from session log off There is racy issue between smb2 session log off and smb2 session setup. It will cause user-after-free from session log off. This add session_lock when setting SMB2_SESSION_EXPIRED and referece count to session struct not to free session while it is being used.

Vendor linux
Product linux
Ecosystems
Industries
Technology
Published Oct 29, 2024
Last Updated May 11, 2026
Stay Ahead of the Next One

Get instant alerts for linux linux

Be the first to know when new high vulnerabilities affecting linux linux are published โ€” delivered to Slack, Telegram or Discord.

Get Free Alerts โ†’ Free ยท No credit card ยท 60 sec setup

Affected Versions

Linux / Linux
0626e6641f6b467447c81dd7678a69c66f7746cf < 0f62358ce85b2d4c949ef1b648be01b29cec667a 0626e6641f6b467447c81dd7678a69c66f7746cf < a9839c37fd813b432988f58a9d9dd59253d3eb2c 0626e6641f6b467447c81dd7678a69c66f7746cf < 5511999e9615e4318e9142d23b29bd1597befc08 0626e6641f6b467447c81dd7678a69c66f7746cf < ee371898b53a9b9b51c02d22a8c31bfb86d45f0d 0626e6641f6b467447c81dd7678a69c66f7746cf < 7aa8804c0b67b3cb263a472d17f2cb50d7f1a930
Linux / Linux
5.15

References

NVD โ†— CVE.org โ†— EPSS Data โ†—
git.kernel.org: https://git.kernel.org/stable/c/0f62358ce85b2d4c949ef1b648be01b29cec667a git.kernel.org: https://git.kernel.org/stable/c/a9839c37fd813b432988f58a9d9dd59253d3eb2c git.kernel.org: https://git.kernel.org/stable/c/5511999e9615e4318e9142d23b29bd1597befc08 git.kernel.org: https://git.kernel.org/stable/c/ee371898b53a9b9b51c02d22a8c31bfb86d45f0d git.kernel.org: https://git.kernel.org/stable/c/7aa8804c0b67b3cb263a472d17f2cb50d7f1a930 lists.debian.org: https://lists.debian.org/debian-lts-announce/2025/01/msg00001.html