Description

In the Linux kernel, the following vulnerability has been resolved: ksmbd: Don't log keys in SMB3 signing and encryption key generation When KSMBD_DEBUG_AUTH logging is enabled, generate_smb3signingkey() and generate_smb3encryptionkey() log the session, signing, encryption, and decryption key bytes. Remove the logs to avoid exposing credentials.

INFO

Published Date :

2026-05-08T14:21:26.618Z

Last Modified :

2026-05-08T14:21:26.618Z

Source :

Linux
AFFECTED PRODUCTS

The following products are affected by CVE-2026-43377 vulnerability.

Vendors Products
Linux
  • Linux Kernel

CVSS Vulnerability Scoring System