-

CVE-2025-40103

smb: client: Fix refcount leak for cifs_sb_tlink

In the Linux kernel, the following vulnerability has been resolved:

smb: client: Fix refcount leak for cifs_sb_tlink

Fix three refcount inconsistency issues related to `cifs_sb_tlink`.

Comments for `cifs_sb_tlink` state that `cifs_put_tlink()` needs to be
called after successful calls to `cifs_sb_tlink()`. Three calls fail to
update refcount accordingly, leading to possible resource leaks.
Daten sind bereitgestellt durch das CVE Programm von einer CVE Numbering Authority (CNA) (Unstrukturiert).
HerstellerLinux
Produkt Linux
Default Statusunaffected
Version 8ceb984379462f94bdebef3288d569c6e1f912ea
Version < d3c8ea197055c260119a13360e8202a27e53e1e4
Status affected
Version 8ceb984379462f94bdebef3288d569c6e1f912ea
Version < 790282abe9d805f08618c1c24ea2529e7259b692
Status affected
Version 8ceb984379462f94bdebef3288d569c6e1f912ea
Version < d7dd034c14928306db1b46be277ae439b84dacf9
Status affected
Version 8ceb984379462f94bdebef3288d569c6e1f912ea
Version < e15605b68b490186da2ad8029c0351a9cfb0b9af
Status affected
Version 8ceb984379462f94bdebef3288d569c6e1f912ea
Version < 896bb31e1416f582503db1350cf1bd10dc64e5a6
Status affected
Version 8ceb984379462f94bdebef3288d569c6e1f912ea
Version < c2b77f42205ef485a647f62082c442c1cd69d3fc
Status affected
HerstellerLinux
Produkt Linux
Default Statusaffected
Version 3.7
Status affected
Version 0
Version < 3.7
Status unaffected
Version <= 5.15.*
Version 5.15.203
Status unaffected
Version <= 6.1.*
Version 6.1.158
Status unaffected
Version <= 6.6.*
Version 6.6.114
Status unaffected
Version <= 6.12.*
Version 6.12.55
Status unaffected
Version <= 6.17.*
Version 6.17.5
Status unaffected
Version <= *
Version 6.18
Status unaffected
VulnDex Vulnerability Enrichment
Diese Information steht angemeldeten Benutzern zur Verfügung. Login Login
Zu dieser CVE wurde keine Warnung gefunden.
EPSS Metriken
Typ Quelle Score Percentile
EPSS FIRST.org 0.08% 0.226
CVSS Metriken
Quelle Base Score Exploit Score Impact Score Vector String
Es wurden noch keine Informationen zu CWE veröffentlicht.