Executive Summary

Informations
Name CVE-2024-57925 First vendor Publication 2025-01-19
Vendor Cve Last vendor Modification 2025-02-27

Security-Database Scoring CVSS v3

Cvss vector : CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:H/A:H
Overall CVSS Score 7.1
Base Score 7.1 Environmental Score 7.1
impact SubScore 5.2 Temporal Score 7.1
Exploitabality Sub Score 1.8
 
Attack Vector Local Attack Complexity Low
Privileges Required Low User Interaction None
Scope Unchanged Confidentiality Impact None
Integrity Impact High Availability Impact High
Calculate full CVSS 3.0 Vectors scores

Security-Database Scoring CVSS v2

Cvss vector :
Cvss Base Score N/A Attack Range N/A
Cvss Impact Score N/A Attack Complexity N/A
Cvss Expoit Score N/A Authentication N/A
Calculate full CVSS 2.0 Vectors scores

Detail

In the Linux kernel, the following vulnerability has been resolved:

ksmbd: fix a missing return value check bug

In the smb2_send_interim_resp(), if ksmbd_alloc_work_struct() fails to allocate a node, it returns a NULL pointer to the in_work pointer. This can lead to an illegal memory write of in_work->response_buf when allocate_interim_rsp_buf() attempts to perform a kzalloc() on it.

To address this issue, incorporating a check for the return value of ksmbd_alloc_work_struct() ensures that the function returns immediately upon allocation failure, thereby preventing the aforementioned illegal memory access.

Original Source

Url : http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2024-57925

CPE : Common Platform Enumeration

TypeDescriptionCount
Application 8
Os 3708

Sources (Detail)

https://git.kernel.org/stable/c/271ae0edbfc942795c162e6cf20d2bc02bd7fde4
https://git.kernel.org/stable/c/2976e91a3e569cf2c92c9f71512c0ab1312fe965
https://git.kernel.org/stable/c/4c16e1cadcbcaf3c82d5fc310fbd34d0f5d0db7c
https://git.kernel.org/stable/c/781c743e18bfd9b7dc0383f036ae952bd1486f21
https://git.kernel.org/stable/c/ee7e40f7fb17f08a8cbae50553e5c2e10ae32fce
Source Url

Alert History

If you want to see full details history, please login or register.
0
1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
Date Informations
2025-06-26 02:38:55
  • Multiple Updates
2025-06-25 12:36:56
  • Multiple Updates
2025-06-24 02:43:30
  • Multiple Updates
2025-05-27 02:48:59
  • Multiple Updates
2025-03-29 03:44:50
  • Multiple Updates
2025-03-28 13:48:04
  • Multiple Updates
2025-03-28 03:22:40
  • Multiple Updates
2025-03-25 03:28:36
  • Multiple Updates
2025-03-19 03:17:26
  • Multiple Updates
2025-03-18 03:30:25
  • Multiple Updates
2025-03-14 03:17:31
  • Multiple Updates
2025-03-06 14:14:05
  • Multiple Updates
2025-03-06 03:09:56
  • Multiple Updates
2025-02-28 00:20:43
  • Multiple Updates
2025-01-23 21:20:32
  • Multiple Updates
2025-01-19 17:20:28
  • First insertion