CyberRota Analysis
AI-GeneratedA critical vulnerability in the Linux kernel affects the ksmbd component, which improperly handles alternate data streams (ADS) by using the credentials of the current task instead of the opener's credentials. This flaw could allow unauthorized access to sensitive data, potentially leading to data leakage or privilege escalation. Organizations using Linux systems with SMB services should prioritize patching this vulnerability to mitigate the risk of exploitation.
Original NVD Description
In the Linux kernel, the following vulnerability has been resolved: ksmbd: use opener credentials for ADS I/O Alternate data streams are stored as xattrs. Unlike regular file I/O, their read and write paths therefore call VFS xattr helpers which recheck inode permissions and LSM policy using the current task credentials. Run ADS I/O with the credentials captured when the SMB handle was opened.