CVE-2024-56729

smb: Initialize cfid->tcon before performing network ops

References

Notes

 carnil> Introduced in ebe98f1447bb ("cifs: enable caching of directories for which a
 carnil> lease is held"). Vulnerable versions: 6.1-rc1.

Bugs

Status

Branch Status
upstream released (6.13-rc1) [c353ee4fb119a2582d0e011f66a76a38f5cf984d]
6.18-upstream-stable N/A "Fixed before branching point"
6.17-upstream-stable N/A "Fixed before branching point"
6.12-upstream-stable released (6.12.2) [1b9ab6b648f89441c8a13cb3fd8ca83ffebc5262]
6.6-upstream-stable released (6.6.64) [625e2357c8fcfae6e66dcc667dc656fe390bab15]
6.1-upstream-stable needed
5.10-upstream-stable N/A "Vulnerable code not present"
sid released (6.12.3-1)
6.12-trixie-security N/A "Fixed before branching point"
6.1-bookworm-security needed
5.10-bullseye-security N/A "Vulnerable code not present"