๐Ÿ” CVE Alert

CVE-2025-37899

UNKNOWN 0.0

ksmbd: fix use-after-free in session logoff

CVSS Score
0.0
EPSS Score
0.0%
EPSS Percentile
0th

In the Linux kernel, the following vulnerability has been resolved: ksmbd: fix use-after-free in session logoff The sess->user object can currently be in use by another thread, for example if another connection has sent a session setup request to bind to the session being free'd. The handler for that connection could be in the smb2_sess_setup function which makes use of sess->user.

Vendor linux
Product linux
Ecosystems
Industries
Technology
Published May 20, 2025
Last Updated May 11, 2026
Stay Ahead of the Next One

Get instant alerts for linux linux

Be the first to know when new unknown vulnerabilities affecting linux linux are published โ€” delivered to Slack, Telegram or Discord.

Get Free Alerts โ†’ Free ยท No credit card ยท 60 sec setup

Affected Versions

Linux / Linux
0626e6641f6b467447c81dd7678a69c66f7746cf < 931dc8a3670f71c45c0b1379ea4e92dafbda1aca 0626e6641f6b467447c81dd7678a69c66f7746cf < 70ad6455139e26e85f48f95d0e21f351c1909342 0626e6641f6b467447c81dd7678a69c66f7746cf < d5ec1d79509b3ee01de02c236f096bc050221b7f 0626e6641f6b467447c81dd7678a69c66f7746cf < 02d16046cd11a5c037b28c12ffb818c56dd3ef43 0626e6641f6b467447c81dd7678a69c66f7746cf < 2fc9feff45d92a92cd5f96487655d5be23fb7e2b
Linux / Linux
5.15

References

NVD โ†— CVE.org โ†— EPSS Data โ†—
git.kernel.org: https://git.kernel.org/stable/c/931dc8a3670f71c45c0b1379ea4e92dafbda1aca git.kernel.org: https://git.kernel.org/stable/c/70ad6455139e26e85f48f95d0e21f351c1909342 git.kernel.org: https://git.kernel.org/stable/c/d5ec1d79509b3ee01de02c236f096bc050221b7f git.kernel.org: https://git.kernel.org/stable/c/02d16046cd11a5c037b28c12ffb818c56dd3ef43 git.kernel.org: https://git.kernel.org/stable/c/2fc9feff45d92a92cd5f96487655d5be23fb7e2b sean.heelan.io: https://sean.heelan.io/2025/05/22/how-i-used-o3-to-find-cve-2025-37899-a-remote-zeroday-vulnerability-in-the-linux-kernels-smb-implementation/ news.ycombinator.com: https://news.ycombinator.com/item?id=44081338