Kernel: cifs filesystem decryption improper input validation remote code execution vulnerability in function receive_encrypted_standard of client
Summary
| CVE | CVE-2024-0565 |
|---|---|
| State | PUBLISHED |
| Assigner | redhat |
| Source Priority | CVE Program / NVD first with legacy fallback |
| Published | 2024-01-15 20:15:43 UTC |
| Updated | 2026-08-10 22:17:06 UTC |
| Description | An out-of-bounds memory read flaw was found in receive_encrypted_standard in fs/smb/client/smb2ops.c in the SMB Client sub-component in the Linux Kernel. This issue occurs due to integer underflow on the memcpy length, leading to a denial of service. |
Risk And Classification
Primary CVSS: v3.1 7.4 HIGH from [email protected]
CVSS:3.1/AV:A/AC:L/PR:L/UI:R/S:U/C:H/I:H/A:H
EPSS: 0.019990000 probability, percentile 0.788610000 (date 2026-08-11)
Problem Types: CWE-191 | CWE-191 Integer Underflow (Wrap or Wraparound)
| Version | Source | Type | Score | Severity | Vector |
|---|---|---|---|---|---|
| 3.1 | [email protected] | Primary | 7.4 | HIGH | CVSS:3.1/AV:A/AC:L/PR:L/UI:R/S:U/C:H/I:H/A:H |
| 3.1 | [email protected] | Secondary | 6.8 | MEDIUM | CVSS:3.1/AV:A/AC:H/PR:L/UI:R/S:U/C:H/I:H/A:H |
| 3.1 | CNA | CVSS | 6.8 | MEDIUM | CVSS:3.1/AV:A/AC:H/PR:L/UI:R/S:U/C:H/I:H/A:H |
CVSS v3.1 Breakdown
Attack Vector
AdjacentAttack Complexity
LowPrivileges Required
LowUser Interaction
RequiredScope
UnchangedConfidentiality
HighIntegrity
HighAvailability
HighCVSS:3.1/AV:A/AC:L/PR:L/UI:R/S:U/C:H/I:H/A:H
NVD Known Affected Configurations (CPE 2.3)
| Type | Vendor | Product | Version | Update | Edition | Language |
|---|---|---|---|---|---|---|
| Operating System | Linux | Linux Kernel | All | All | All | All |
| Operating System | Linux | Linux Kernel | 6.7 | rc1 | All | All |
| Operating System | Linux | Linux Kernel | 6.7 | rc2 | All | All |
| Operating System | Linux | Linux Kernel | 6.7 | rc3 | All | All |
| Operating System | Linux | Linux Kernel | 6.7 | rc4 | All | All |
| Operating System | Linux | Linux Kernel | 6.7 | rc5 | All | All |
| Application | Netapp | Ontap Tools | - | All | All | All |
Vendor Declared Affected Products
| Source | Vendor | Product | Version | Platforms |
|---|---|---|---|---|
| CNA | Linux | Kernel | affected 4.19 5.10.211 semver | Not specified |
| CNA | Linux | Kernel | affected 5.11 5.15.150 semver | Not specified |
| CNA | Linux | Kernel | affected 5.16 6.1.69 semver | Not specified |
| CNA | Linux | Kernel | affected 6.2 6.6.8 semver | Not specified |
| CNA | Red Hat | Red Hat Enterprise Linux 8 | unaffected 0:4.18.0-513.24.1.rt7.326.el8_9 * rpm | Not specified |
| CNA | Red Hat | Red Hat Enterprise Linux 8 | unaffected 0:4.18.0-513.24.1.el8_9 * rpm | Not specified |
| CNA | Red Hat | Red Hat Enterprise Linux 8.6 Extended Update Support | unaffected 0:4.18.0-372.95.1.el8_6 * rpm | Not specified |
| CNA | Red Hat | Red Hat Enterprise Linux 8.8 Extended Update Support | unaffected 0:4.18.0-477.51.1.el8_8 * rpm | Not specified |
| CNA | Red Hat | Red Hat Enterprise Linux 9 | unaffected 0:5.14.0-427.13.1.el9_4 * rpm | Not specified |
| CNA | Red Hat | Red Hat Enterprise Linux 9 | unaffected 0:5.14.0-427.13.1.el9_4 * rpm | Not specified |
| CNA | Red Hat | Red Hat Enterprise Linux 9.2 Extended Update Support | unaffected 0:5.14.0-284.59.1.el9_2 * rpm | Not specified |
| CNA | Red Hat | Red Hat Enterprise Linux 9.2 Extended Update Support | unaffected 0:5.14.0-284.59.1.rt14.344.el9_2 * rpm | Not specified |
| CNA | Red Hat | Red Hat Virtualization 4 For Red Hat Enterprise Linux 8 | unaffected 0:4.18.0-372.95.1.el8_6 * rpm | Not specified |
| CNA | Red Hat | RHOL-5.7-RHEL-8 | unaffected v5.7.13-16 * rpm | Not specified |
| CNA | Red Hat | RHOL-5.7-RHEL-8 | unaffected v5.7.13-7 * rpm | Not specified |
| CNA | Red Hat | RHOL-5.7-RHEL-8 | unaffected v6.8.1-408 * rpm | Not specified |
| CNA | Red Hat | RHOL-5.7-RHEL-8 | unaffected v5.7.13-19 * rpm | Not specified |
| CNA | Red Hat | RHOL-5.7-RHEL-8 | unaffected v1.0.0-480 * rpm | Not specified |
| CNA | Red Hat | RHOL-5.7-RHEL-8 | unaffected v5.7.13-9 * rpm | Not specified |
| CNA | Red Hat | RHOL-5.7-RHEL-8 | unaffected v0.4.0-248 * rpm | Not specified |
| CNA | Red Hat | RHOL-5.7-RHEL-8 | unaffected v1.14.6-215 * rpm | Not specified |
| CNA | Red Hat | RHOL-5.7-RHEL-8 | unaffected v6.8.1-431 * rpm | Not specified |
| CNA | Red Hat | RHOL-5.7-RHEL-8 | unaffected v1.1.0-228 * rpm | Not specified |
| CNA | Red Hat | RHOL-5.7-RHEL-8 | unaffected v5.8.1-471 * rpm | Not specified |
| CNA | Red Hat | RHOL-5.7-RHEL-8 | unaffected v2.9.6-15 * rpm | Not specified |
| CNA | Red Hat | RHOL-5.7-RHEL-8 | unaffected v5.7.13-3 * rpm | Not specified |
| CNA | Red Hat | RHOL-5.7-RHEL-8 | unaffected v5.7.13-27 * rpm | Not specified |
| CNA | Red Hat | RHOL-5.7-RHEL-8 | unaffected v5.7.13-12 * rpm | Not specified |
| CNA | Red Hat | RHOL-5.7-RHEL-8 | unaffected v0.1.0-527 * rpm | Not specified |
| CNA | Red Hat | RHOL-5.7-RHEL-8 | unaffected v0.1.0-225 * rpm | Not specified |
| CNA | Red Hat | RHOL-5.7-RHEL-8 | unaffected v0.28.1-57 * rpm | Not specified |
| CNA | Red Hat | Red Hat Enterprise Linux 6 | Not specified | Not specified |
| CNA | Red Hat | Red Hat Enterprise Linux 7 | Not specified | Not specified |
| CNA | Red Hat | Red Hat Enterprise Linux 7 | Not specified | Not specified |
| CNA | Red Hat | Red Hat Enterprise Linux 9 | Not specified | Not specified |
References
| Reference | Source | Link | Tags |
|---|---|---|---|
| security.netapp.com/advisory/ntap-20240223-0002 | af854a3a-2127-422b-91ae-364da2661108 | security.netapp.com | |
| access.redhat.com/errata/RHSA-2024:1614 | af854a3a-2127-422b-91ae-364da2661108 | access.redhat.com | |
| cve-details | af854a3a-2127-422b-91ae-364da2661108 | access.redhat.com | Third Party Advisory |
| access.redhat.com/errata/RHSA-2024:1404 | af854a3a-2127-422b-91ae-364da2661108 | access.redhat.com | |
| lists.debian.org/debian-lts-announce/2024/06/msg00017.html | af854a3a-2127-422b-91ae-364da2661108 | lists.debian.org | |
| Patch "smb: client: fix OOB in receive_encrypted_standard()" has been added to the 6.6-stable tree — Linux Stable Commits | af854a3a-2127-422b-91ae-364da2661108 | www.spinics.net | Mailing List, Patch |
| access.redhat.com/errata/RHSA-2024:1532 | af854a3a-2127-422b-91ae-364da2661108 | access.redhat.com | |
| access.redhat.com/errata/RHSA-2024:1607 | af854a3a-2127-422b-91ae-364da2661108 | access.redhat.com | |
| access.redhat.com/errata/RHSA-2024:1188 | af854a3a-2127-422b-91ae-364da2661108 | access.redhat.com | |
| 2258518 – (CVE-2024-0565) CVE-2024-0565 kernel: CIFS Filesystem Decryption Improper Input Validation Remote Code Execution Vulnerability in function receive_encrypted_standard of client | af854a3a-2127-422b-91ae-364da2661108 | bugzilla.redhat.com | Issue Tracking, Patch, Third Party Advisory |
| access.redhat.com/errata/RHSA-2024:1533 | af854a3a-2127-422b-91ae-364da2661108 | access.redhat.com | |
| access.redhat.com/errata/RHSA-2024:2394 | af854a3a-2127-422b-91ae-364da2661108 | access.redhat.com | |
| access.redhat.com/errata/RHSA-2024:2093 | af854a3a-2127-422b-91ae-364da2661108 | access.redhat.com | |
| CVE Program record | CVE.ORG | www.cve.org | canonical |
| NVD vulnerability detail | NVD | nvd.nist.gov | canonical, analysis |
No vendor comments have been submitted for this CVE.
Additional Advisory Data
| Source | Time | Event |
|---|---|---|
| CNA | 2024-01-15T00:00:00.000Z | Reported to Red Hat. |
| CNA | 2023-12-18T00:00:00.000Z | Made public. |
Workarounds
CNA: To mitigate this issue, prevent module cifs from being loaded. Please see https://access.redhat.com/solutions/41278 for how to blacklist a kernel module to prevent it from loading automatically.
Legacy QID Mappings
- 161479 Oracle Enterprise Linux Security Update for kernel (ELSA-2024-1607)
- 200116 Ubuntu Security Notification for Linux kernel (OEM) Vulnerabilities (USN-6639-1)
- 200131 Ubuntu Security Notification for Linux kernel Vulnerabilities (USN-6648-1)
- 200132 Ubuntu Security Notification for Linux kernel (Azure) Vulnerabilities (USN-6652-1)
- 200133 Ubuntu Security Notification for Linux kernel Vulnerabilities (USN-6653-1)
- 200134 Ubuntu Security Notification for Linux kernel Vulnerabilities (USN-6651-1)
- 200150 Ubuntu Security Notification for Linux kernel Vulnerabilities (USN-6651-2)
- 200151 Ubuntu Security Notification for Linux kernel (Azure) Vulnerabilities (USN-6648-2)
- 200152 Ubuntu Security Notification for Linux kernel (AWS) Vulnerabilities (USN-6653-2)
- 200157 Ubuntu Security Notification for Linux kernel (StarFive) Vulnerabilities (USN-6651-3)
- 200158 Ubuntu Security Notification for Linux kernel (Low Latency) Vulnerabilities (USN-6653-3)
- 200165 Ubuntu Security Notification for Linux kernel (GKE) Vulnerabilities (USN-6653-4)
- 243041 Red Hat Update for kernel security (RHSA-2024:1188)
- 243087 Red Hat Update for kernel (RHSA-2024:1404)
- 243140 Red Hat Update for kernel (RHSA-2024:1532)
- 243142 Red Hat Update for kernel-rt (RHSA-2024:1533)
- 243160 Red Hat Update for kernel security (RHSA-2024:1607)
- 243167 Red Hat Update for kernel-rt (RHSA-2024:1614)
- 357101 Amazon Linux Security Advisory for kernel : ALAS2KERNEL-5.10-2024-048
- 357105 Amazon Linux Security Advisory for kernel : ALAS2KERNEL-5.15-2024-036
- 357112 Amazon Linux Security Advisory for kernel : ALAS2KERNEL-5.4-2024-059
- 357311 Amazon Linux Security Advisory for kernel-livepatch : ALAS2LIVEPATCH-2024-166
- 357314 Amazon Linux Security Advisory for kernel-livepatch : ALAS2LIVEPATCH-2024-167
- 357318 Amazon Linux Security Advisory for kernel-livepatch : ALAS2LIVEPATCH-2024-169
- 6140020 AWS Bottlerocket Security Update for kernel (GHSA-2cxv-pfrm-gfhr)
- 6140133 AWS Bottlerocket Security Update for kernel (GHSA-2cxv-pfrm-gfhr)
- 673321 EulerOS Security Update for kernel (EulerOS-SA-2024-1337)
- 673547 EulerOS Security Update for kernel (EulerOS-SA-2024-1315)
- 673723 EulerOS Security Update for kernel (EulerOS-SA-2024-1237)
- 673992 EulerOS Security Update for kernel (EulerOS-SA-2024-1215)
- 674156 EulerOS Security Update for kernel (EulerOS-SA-2024-1509)
- 674158 EulerOS Security Update for kernel (EulerOS-SA-2024-1488)
- 755747 SUSE Enterprise Linux Security Update for the Linux Kernel (SUSE-SU-2024:0469-1)
- 755750 SUSE Enterprise Linux Security Update for the Linux Kernel (SUSE-SU-2024:0476-1)
- 755751 SUSE Enterprise Linux Security Update for the Linux Kernel (SUSE-SU-2024:0474-1)
- 755752 SUSE Enterprise Linux Security Update for the Linux Kernel (SUSE-SU-2024:0478-1)
- 755754 SUSE Enterprise Linux Security Update for the Linux Kernel (SUSE-SU-2024:0516-1)
- 755755 SUSE Enterprise Linux Security Update for the Linux Kernel (SUSE-SU-2024:0515-1)
- 755756 SUSE Enterprise Linux Security Update for the Linux Kernel (SUSE-SU-2024:0514-1)
- 756098 SUSE Enterprise Linux Security Update for the Linux Kernel RT (Live Patch 1 for SLE 15 SP5) (SUSE-SU-2024:1181-1)
- 756099 SUSE Enterprise Linux Security Update for the Linux Kernel RT (Live Patch 9 for SLE 15 SP5) (SUSE-SU-2024:1184-1)
- 756100 SUSE Enterprise Linux Security Update for the Linux Kernel RT (Live Patch 5 for SLE 15 SP5) (SUSE-SU-2024:1183-1)
- 756110 SUSE Enterprise Linux Security Update for the Linux Kernel (Live Patch 9 for SLE 15 SP5) (SUSE-SU-2024:1239-1)
- 756111 SUSE Enterprise Linux Security Update for the Linux Kernel (Live Patch 3 for SLE 15 SP5) (SUSE-SU-2024:1236-1)
- 756112 SUSE Enterprise Linux Security Update for the Linux Kernel (Live Patch 40 for SLE 15 SP3) (SUSE-SU-2024:1229-1)
- 756113 SUSE Enterprise Linux Security Update for the Linux Kernel (Live Patch 36 for SLE 15 SP3) (SUSE-SU-2024:1246-1)
- 756115 SUSE Enterprise Linux Security Update for the Linux Kernel (Live Patch 5 for SLE 15 SP5) (SUSE-SU-2024:1251-1)
- 756116 SUSE Enterprise Linux Security Update for the Linux Kernel (Live Patch 35 for SLE 15 SP3) (SUSE-SU-2024:1249-1)
- 756117 SUSE Enterprise Linux Security Update for the Linux Kernel (Live Patch 37 for SLE 15 SP3) (SUSE-SU-2024:1248-1)
- 756118 SUSE Enterprise Linux Security Update for the Linux Kernel (Live Patch 1 for SLE 15 SP5) (SUSE-SU-2024:1252-1)
- 756120 SUSE Enterprise Linux Security Update for the Linux Kernel (Live Patch 6 for SLE 15 SP5) (SUSE-SU-2024:1274-1)
- 756122 SUSE Enterprise Linux Security Update for the Linux Kernel (Live Patch 40 for SLE 15 SP2) (SUSE-SU-2024:1257-1)
- 941650 AlmaLinux Security Update for kernel (ALSA-2024:1607)
- 961147 Rocky Linux Security Update for kernel (RLSA-2024:1607)
- 961150 Rocky Linux Security Update for kernel-rt (RLSA-2024:1614)