New Linux Kernel Bug is a Patch Now or Disable Scenario

Vulnerability Details Just in time for Christmas, we have a 9.6 vulnerability (out of 10) in some Linux Kernels (5.15 and later) which can be exploited for Remote Code Execution (RCE) without authentication on network enabled ports but only on systems where the ksmbd kernel module is enabled are vulnerable. The specific flaw exists within the processing of SMB2_TREE_DISCONNECT commands.

Read full article on CyberHoot

 


Date:

Categorie(s):