CVE-2024-35866 | Linux Kernel up to 6.6.25/6.8.4 SMB Client cifs_dump_full_key use after free (10e17ca4000e/3103163ccd3b/58acd1f49716 / Nessus ID 210815)
A vulnerability has been found in Linux Kernel up to 6.6.25/6.8.4 and classified as problematic. This vulnerability affects the function cifs_dump_full_key of the component SMB Client. The manipulation leads to use after free.
This vulnerability was named CVE-2024-35866. The attack can only be done within the local network. There is no exploit available.
It is recommended to upgrade the affected component.