CVE-2023-4130 | Linux Kernel up to 5.15.126/6.1.45/6.4.10 ksmbd smb2_set_ea Next buffer overflow (WID-SEC-2025-1858)
A vulnerability categorized as critical has been discovered in Linux Kernel up to 5.15.126/6.1.45/6.4.10. This issue affects the function smb2_set_ea of the component ksmbd. The manipulation of the argument Next results in buffer overflow.
This vulnerability is reported as CVE-2023-4130. The attacker must have access to the local network to execute the attack. No exploit exists.
It is advisable to upgrade the affected component.