
Exploit for CVE-2025-37947 in ksmbd, a Linux kernel SMB server, causing an out-of-bounds write. Includes BPF tracer, QEMU setup, and minimal PoC trigger.
For more information, see the article here.
bpf-tracer.sh - BPF msg_msg tracerCVE-2025-37947.c - exploit for CVE-2025-37947proof-of-concept.c - minimal trigger that causes the OOB writeksmbd.conf - ksmbd configMakefile - builds exploitrun-qemu.sh - launches an Ubuntu QEMU VM, ubuntu-22.04.5.qcow2 has to be present