CVE-2023-54280
Severity CVSS v4.0:
Pending analysis
Type:
Unavailable / Other
Publication date:
30/12/2025
Last modified:
30/12/2025
Description
In the Linux kernel, the following vulnerability has been resolved:<br />
<br />
cifs: fix potential race when tree connecting ipc<br />
<br />
Protect access of TCP_Server_Info::hostname when building the ipc tree<br />
name as it might get freed in cifsd thread and thus causing an<br />
use-after-free bug in __tree_connect_dfs_target(). Also, while at it,<br />
update status of IPC tcon on success and then avoid any extra tree<br />
connects.



