๐Ÿ” CVE Alert

CVE-2025-37952

UNKNOWN 0.0

ksmbd: Fix UAF in __close_file_table_ids

CVSS Score
0.0
EPSS Score
0.0%
EPSS Percentile
0th

In the Linux kernel, the following vulnerability has been resolved: ksmbd: Fix UAF in __close_file_table_ids A use-after-free is possible if one thread destroys the file via __ksmbd_close_fd while another thread holds a reference to it. The existing checks on fp->refcount are not sufficient to prevent this. The fix takes ft->lock around the section which removes the file from the file table. This prevents two threads acquiring the same file pointer via __close_file_table_ids, as well as the other functions which retrieve a file from the IDR and which already use this same lock.

Vendor linux
Product linux
Ecosystems
Industries
Technology
Published May 20, 2025
Last Updated May 11, 2026
Stay Ahead of the Next One

Get instant alerts for linux linux

Be the first to know when new unknown vulnerabilities affecting linux linux are published โ€” delivered to Slack, Telegram or Discord.

Get Free Alerts โ†’ Free ยท No credit card ยท 60 sec setup

Affected Versions

Linux / Linux
0626e6641f6b467447c81dd7678a69c66f7746cf < fec1f9e9a650e8e7011330a085c77e7bf2a08ea9 0626e6641f6b467447c81dd7678a69c66f7746cf < 9e9841e232b51171ddf3bc4ee517d5d28dc8cad6 0626e6641f6b467447c81dd7678a69c66f7746cf < 16727e442568a46d9cca69fe2595896de86e120d 0626e6641f6b467447c81dd7678a69c66f7746cf < 36991c1ccde2d5a521577c448ffe07fcccfe104d
Linux / Linux
5.15

References

NVD โ†— CVE.org โ†— EPSS Data โ†—
git.kernel.org: https://git.kernel.org/stable/c/fec1f9e9a650e8e7011330a085c77e7bf2a08ea9 git.kernel.org: https://git.kernel.org/stable/c/9e9841e232b51171ddf3bc4ee517d5d28dc8cad6 git.kernel.org: https://git.kernel.org/stable/c/16727e442568a46d9cca69fe2595896de86e120d git.kernel.org: https://git.kernel.org/stable/c/36991c1ccde2d5a521577c448ffe07fcccfe104d