SMB: Linux Kernel ksmbd SMB2_SESSION_SETUP Handling Memory Exhaustion

This signature detects attempts to exploit a known vulnerability against Linux Kernel ksmbd. A successful attack can result in a denial-of-service condition.

Extended Description

A flaw was found in the Linux kernel's ksmbd, a high-performance in-kernel SMB server. The specific flaw exists within the handling of SMB2_SESSION_SETUP commands. The issue results from the lack of control of resource consumption. An attacker can leverage this vulnerability to create a denial-of-service condition on the system.

Affected Products

Linux linux_kernel

Short Name
SMB:LNX-KRNL-SESN-STP-DOS
Severity
Major
Recommended
False
Recommended Action
None
Category
SMB
Keywords
CVE-2023-32247 Exhaustion Handling Kernel Linux Memory SMB2_SESSION_SETUP ksmbd
Release Date
09/27/2023
Supported Platforms

srx-branch-19.3

vsrx3bsd-19.2

srx-19.4

vsrx3bsd-19.4

srx-branch-19.4

vsrx-19.4

vsrx-19.2

srx-19.3

Sigpack Version
3657
False Positive
Rarely
Vendors

Netapp

Linux

Found a potential security threat?