CVE-2025-37777
01.05.2025, 14:15
In the Linux kernel, the following vulnerability has been resolved: ksmbd: fix use-after-free in __smb2_lease_break_noti() Move tcp_transport free to ksmbd_conn_free. If ksmbd connection is referenced when ksmbd server thread terminates, It will not be freed, but conn->tcp_transport is freed. __smb2_lease_break_noti can be performed asynchronously when the connection is disconnected. __smb2_lease_break_noti calls ksmbd_conn_write, which can cause use-after-free when conn->ksmbd_transport is already freed.Enginsight
| Vendor | Product | Version |
|---|---|---|
| linux | linux_kernel | 5.15 ≤ 𝑥 < 6.6.101 |
| linux | linux_kernel | 6.7 ≤ 𝑥 < 6.12.26 |
| linux | linux_kernel | 6.13 ≤ 𝑥 < 6.14.4 |
| linux | linux_kernel | 6.15:rc1 |
| linux | linux_kernel | 6.15:rc2 |
𝑥
= Vulnerable software versions
Debian Releases
Common Weakness Enumeration