๐Ÿ” CVE Alert

CVE-2025-37778

UNKNOWN 0.0

ksmbd: Fix dangling pointer in krb_authenticate

CVSS Score
0.0
EPSS Score
0.0%
EPSS Percentile
0th

In the Linux kernel, the following vulnerability has been resolved: ksmbd: Fix dangling pointer in krb_authenticate krb_authenticate frees sess->user and does not set the pointer to NULL. It calls ksmbd_krb5_authenticate to reinitialise sess->user but that function may return without doing so. If that happens then smb2_sess_setup, which calls krb_authenticate, will be accessing free'd memory when it later uses sess->user.

Vendor linux
Product linux
Ecosystems
Industries
Technology
Published May 1, 2025
Last Updated Apr 18, 2026
Stay Ahead of the Next One

Get instant alerts for linux linux

Be the first to know when new unknown vulnerabilities affecting linux linux are published โ€” delivered to Slack, Telegram or Discord.

Get Free Alerts โ†’ Free ยท No credit card ยท 60 sec setup

Affected Versions

Linux / Linux
0626e6641f6b467447c81dd7678a69c66f7746cf < b61f04d5d73c53d183019bafe22fb700a739bac5 0626e6641f6b467447c81dd7678a69c66f7746cf < d5b554bc8d554ed6ddf443d3db2fad9f665cec10 0626e6641f6b467447c81dd7678a69c66f7746cf < 1db2451de23e98bc864c6a6e52aa0d82c91cb325 0626e6641f6b467447c81dd7678a69c66f7746cf < 6e30c0e10210c714f3d4453dc258d4abcc70364e 0626e6641f6b467447c81dd7678a69c66f7746cf < e83e39a5f6a01a81411a4558a59a10f87aa88dd6 0626e6641f6b467447c81dd7678a69c66f7746cf < 1e440d5b25b7efccb3defe542a73c51005799a5f
Linux / Linux
5.15

References

NVD โ†— CVE.org โ†— EPSS Data โ†—
git.kernel.org: https://git.kernel.org/stable/c/b61f04d5d73c53d183019bafe22fb700a739bac5 git.kernel.org: https://git.kernel.org/stable/c/d5b554bc8d554ed6ddf443d3db2fad9f665cec10 git.kernel.org: https://git.kernel.org/stable/c/1db2451de23e98bc864c6a6e52aa0d82c91cb325 git.kernel.org: https://git.kernel.org/stable/c/6e30c0e10210c714f3d4453dc258d4abcc70364e git.kernel.org: https://git.kernel.org/stable/c/e83e39a5f6a01a81411a4558a59a10f87aa88dd6 git.kernel.org: https://git.kernel.org/stable/c/1e440d5b25b7efccb3defe542a73c51005799a5f lists.debian.org: https://lists.debian.org/debian-lts-announce/2025/05/msg00045.html