← All CVEs

CVE-2024-58087

critical · 9.8

In the Linux kernel, the following vulnerability has been resolved: ksmbd: fix racy issue from session lookup and expire Increment the session reference count within the lock for lookup to avoid racy issue with session expire.

9.8
CVSS
0.5%
EPSS (exploit prob.)
42nd
EPSS percentile
2025-03-12
Published

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

Weaknesses

CWE-667

Affected products

VendorProductAffected versions
linuxlinux_kernel>= 5.15.145, < 5.15.176
linuxlinux_kernel>= 6.1.29, < 6.1.121
linuxlinux_kernel>= 6.2.16, < 6.3
linuxlinux_kernel>= 6.3.2, < 6.4
linuxlinux_kernel>= 6.7, < 6.12.6
linuxlinux_kernel6.13
linuxlinux_kernel6.13

Check a specific version with /api/v1/cve/match.

References

Query this programmatically:

curl https://evil-db.io/api/v1/cve/CVE-2024-58087