Critical Linux Kernel KSMBD Vulnerability Detected by ZDI
Updated on 2022-12-31: Linux Kernel Vulnerability Researchers from the ZDI (Zero Day Initiative) have detected a critical use-after-free remote code execution vulnerability in Linux kernel ksmbd. The issue lies in the way SMB2_TREE_DISCONNECT commands are processed. Note In a pre-holiday “Grinch move”, ZDI released limited details on this vulnerability and likely included a likely inflated …