Vulnerability Database

311,378

Total vulnerabilities in the database

CVE-2024-35866

In the Linux kernel, the following vulnerability has been resolved:

smb: client: fix potential UAF in cifs_dump_full_key()

Skip sessions that are being teared down (status == SES_EXITING) to avoid UAF.

  • Published: May 19, 2024
  • Updated: Nov 4, 2025
  • CVE: CVE-2024-35866
  • Severity: High
  • Exploit:

CVSS v3:

  • Severity: High
  • Score: 7.8
  • AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H

CWEs: