-

CVE-2025-40285

In the Linux kernel, the following vulnerability has been resolved:

smb/server: fix possible refcount leak in smb2_sess_setup()

Reference count of ksmbd_session will leak when session need reconnect.
Fix this by adding the missing ksmbd_user_session_put().
Verknüpft mit AI von unstrukturierten Daten zu bestehenden CPE der NVD
Diese Information steht angemeldeten Benutzern zur Verfügung. Login Login
Daten sind bereitgestellt durch das CVE Programm von einer CVE Numbering Authority (CNA) (Unstrukturiert).
HerstellerLinux
Produkt Linux
Default Statusunaffected
Version < 6fc935f798d44a8eb8a5e6659198399fbf57b981
Version 1da177e4c3f41524e886b7f1b8a0c1fc7321cac2
Status affected
Version < e671f9bb97805771380c98de944e2ceab6949188
Version 1da177e4c3f41524e886b7f1b8a0c1fc7321cac2
Status affected
Version < dcc51dfe6ff26b52cac106865a172ac982d78401
Version 1da177e4c3f41524e886b7f1b8a0c1fc7321cac2
Status affected
Version < d37b2c81c83d6c0d5ca582f4fe73c672983f9e0d
Version 1da177e4c3f41524e886b7f1b8a0c1fc7321cac2
Status affected
Version < 379510a815cb2e64eb0a379cb62295d6ade65df0
Version 1da177e4c3f41524e886b7f1b8a0c1fc7321cac2
Status affected
HerstellerLinux
Produkt Linux
Default Statusaffected
Version <= 6.1.*
Version 6.1.159
Status unaffected
Version <= 6.6.*
Version 6.6.117
Status unaffected
Version <= 6.12.*
Version 6.12.59
Status unaffected
Version <= 6.17.*
Version 6.17.9
Status unaffected
Version <= *
Version 6.18
Status unaffected
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
EPSS Metriken
Typ Quelle Score Percentile
EPSS FIRST.org 0.02% 0.038
CVSS Metriken
Quelle Base Score Exploit Score Impact Score Vector String