CVE-2023-53008
CVSS 3.1 Score 5.5 of 10 (medium)
Details
Summary
CVE-2023-53008 is a newly identified vulnerability affecting the Linux kernel. This issue pertains to the Common Internet File System (cifs) and involves potential memory leaks during session setup. The Linux team has resolved this issue by ensuring that the memory associated with cifs_ses::auth_key.response is properly freed before being reallocated. Failure to do so could result in memory leakage during reconnects or mounting processes. This vulnerability poses a potential risk if exploited, and users are advised to update their Linux kernels to the latest version to mitigate the threat.
Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.