CVE-2023-2593
Kernel: ksmbd memory exhaustion denial-of-service vulnerability
Vexday Risk Score
13Low
SSVC decision (CISA)
Track
No exploitation signal → monitor
CVSS 5.9EPSS 0.7%KEV nãoPoC —Nuclei —Metasploit —Patch —
Lifecycle
30 Jul 2025Published on NVD
Recommendation: Monitor — no exploitation signal at the moment.
A flaw exists within the Linux kernel's handling of new TCP connections. The issue results from the lack of memory release after its effective lifetime. This vulnerability allows an unauthenticated attacker to create a denial of service condition on the system.
CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:N/A:H
Affected products
linuxRed Hat · Red Hat Enterprise Linux 10Red Hat · Red Hat Enterprise Linux 6Red Hat · Red Hat Enterprise Linux 7Red Hat · Red Hat Enterprise Linux 8Red Hat · Red Hat Enterprise Linux 9Red Hat · Red Hat In-Vehicle Operating System 1Want to know if your infrastructure is exposed to this?
Talk to TrueHacking →