In the Linux kernel, the following vulnerability has been resolved:ksmbd: fix Preauh_HashValue race conditionIf client send multiple session setup requests to ksmbd,Preauh_HashValue race condition could happen.There is no need to free sess->Preauh_HashValue at session setup phase.It can be freed together with session at connection termination phase.
No PoCs from references.
- https://github.com/ARPSyndicate/cve-scores