๐Ÿ” CVE Alert

CVE-2025-21994

UNKNOWN 0.0

ksmbd: fix incorrect validation for num_aces field of smb_acl

CVSS Score
0.0
EPSS Score
0.0%
EPSS Percentile
0th

In the Linux kernel, the following vulnerability has been resolved: ksmbd: fix incorrect validation for num_aces field of smb_acl parse_dcal() validate num_aces to allocate posix_ace_state_array. if (num_aces > ULONG_MAX / sizeof(struct smb_ace *)) It is an incorrect validation that we can create an array of size ULONG_MAX. smb_acl has ->size field to calculate actual number of aces in request buffer size. Use this to check invalid num_aces.

Vendor linux
Product linux
Ecosystems
Industries
Technology
Published Apr 2, 2025
Last Updated May 11, 2026
Stay Ahead of the Next One

Get instant alerts for linux linux

Be the first to know when new unknown vulnerabilities affecting linux linux are published โ€” delivered to Slack, Telegram or Discord.

Get Free Alerts โ†’ Free ยท No credit card ยท 60 sec setup

Affected Versions

Linux / Linux
0626e6641f6b467447c81dd7678a69c66f7746cf < c3a3484d9d31b27a3db0fab91fcf191132d65236 0626e6641f6b467447c81dd7678a69c66f7746cf < 9c4e202abff45f8eac17989e549fc7a75095f675 0626e6641f6b467447c81dd7678a69c66f7746cf < d0f87370622a853b57e851f7d5a5452b72300f19 0626e6641f6b467447c81dd7678a69c66f7746cf < a4cb17797a5d241f1e509cb5b46ed95a80c2f5fd 0626e6641f6b467447c81dd7678a69c66f7746cf < f6a6721802ac2f12f4c1bbe839a4c229b61866f2 0626e6641f6b467447c81dd7678a69c66f7746cf < 1b8b67f3c5e5169535e26efedd3e422172e2db64
Linux / Linux
5.15

References

NVD โ†— CVE.org โ†— EPSS Data โ†—
git.kernel.org: https://git.kernel.org/stable/c/c3a3484d9d31b27a3db0fab91fcf191132d65236 git.kernel.org: https://git.kernel.org/stable/c/9c4e202abff45f8eac17989e549fc7a75095f675 git.kernel.org: https://git.kernel.org/stable/c/d0f87370622a853b57e851f7d5a5452b72300f19 git.kernel.org: https://git.kernel.org/stable/c/a4cb17797a5d241f1e509cb5b46ed95a80c2f5fd git.kernel.org: https://git.kernel.org/stable/c/f6a6721802ac2f12f4c1bbe839a4c229b61866f2 git.kernel.org: https://git.kernel.org/stable/c/1b8b67f3c5e5169535e26efedd3e422172e2db64 lists.debian.org: https://lists.debian.org/debian-lts-announce/2025/05/msg00045.html