CVE-2025-22040
ksmbd: fix session use-after-free in multichannel connection
CVSS Score
8.8
EPSS Score
0.1%
EPSS Percentile
16th
In the Linux kernel, the following vulnerability has been resolved: ksmbd: fix session use-after-free in multichannel connection There is a race condition between session setup and ksmbd_sessions_deregister. The session can be freed before the connection is added to channel list of session. This patch check reference count of session before freeing it.
| Vendor | linux |
| Product | linux |
| Ecosystems | |
| Industries | Technology |
| Published | Apr 16, 2025 |
| Last Updated | Apr 2, 2026 |
Stay Ahead of the Next One
Get instant alerts for linux linux
Be the first to know when new high vulnerabilities affecting linux linux are published โ delivered to Slack, Telegram or Discord.
Get Free Alerts โ
Free ยท No credit card ยท 60 sec setup
CVSS v3 Breakdown
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H Attack Vector
Attack Complexity
Privileges Required
User Interaction
Scope
Confidentiality
Integrity
Availability
Affected Versions
Linux / Linux
0626e6641f6b467447c81dd7678a69c66f7746cf < 596407adb9af1ee75fe7c7529607783d31b66e7f 0626e6641f6b467447c81dd7678a69c66f7746cf < 3980770cb1470054e6400fd97668665975726737 0626e6641f6b467447c81dd7678a69c66f7746cf < 9069939d762138e232a6f79e3e1462682ed6a17d 0626e6641f6b467447c81dd7678a69c66f7746cf < 94c281721d4ed2d972232414b91d98a6f5bdb16b 0626e6641f6b467447c81dd7678a69c66f7746cf < 7dfbd4c43eed91dd2548a95236908025707a8dfd 0626e6641f6b467447c81dd7678a69c66f7746cf < fa4cdb8cbca7d6cb6aa13e4d8d83d1103f6345db
Linux / Linux
5.15
References
git.kernel.org: https://git.kernel.org/stable/c/596407adb9af1ee75fe7c7529607783d31b66e7f git.kernel.org: https://git.kernel.org/stable/c/3980770cb1470054e6400fd97668665975726737 git.kernel.org: https://git.kernel.org/stable/c/9069939d762138e232a6f79e3e1462682ed6a17d git.kernel.org: https://git.kernel.org/stable/c/94c281721d4ed2d972232414b91d98a6f5bdb16b git.kernel.org: https://git.kernel.org/stable/c/7dfbd4c43eed91dd2548a95236908025707a8dfd git.kernel.org: https://git.kernel.org/stable/c/fa4cdb8cbca7d6cb6aa13e4d8d83d1103f6345db lists.debian.org: https://lists.debian.org/debian-lts-announce/2025/05/msg00045.html