CVE-2023-32246

Severity CVSS v4.0:
Pending analysis
Type:
Unavailable / Other
Publication date:
16/08/2025
Last modified:
18/11/2025

Description

In the Linux kernel, the following vulnerability has been resolved:<br /> <br /> ksmbd: call rcu_barrier() in ksmbd_server_exit()<br /> <br /> racy issue is triggered the bug by racing between closing a connection<br /> and rmmod. In ksmbd, rcu_barrier() is not called at module unload time,<br /> so nothing prevents ksmbd from getting unloaded while it still has RCU<br /> callbacks pending. It leads to trigger unintended execution of kernel<br /> code locally and use to defeat protections such as Kernel Lockdown

Vulnerable products and versions

CPE From Up to
cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:* 5.15 (including) 5.15.111 (excluding)
cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:* 5.16 (including) 6.1.28 (excluding)
cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:* 6.2 (including) 6.2.15 (excluding)
cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:* 6.3 (including) 6.3.2 (excluding)