ThreatCluster

Out-of-Bounds Vulnerabilities in ksmbd Addressed

First seen 18 Feb 2026, 14:22 UTC Api.Msrc.Microsoft 39

Article Content

Browse articles
ThreatCluster

Microsoft has published information regarding two critical vulnerabilities in ksmbd, identified as CVE-2024-56626 and CVE-2024-56627. These vulnerabilities involve an out-of-bounds write and an out-of-bounds read, respectively, affecting the ksmbd file server component. Both CVEs were published on December 27, 2024.

Timeline

2024-12-27
CVE-2024-56626 and CVE-2024-56627 published
2026-02-18
Information published regarding CVE-2024-56626 and CVE-2024-56627