CVE Database
/

CVE-2025-37926

Back to search

CVE-2025-37926

Published: May 20, 2025

Modified: May 11, 2026

PUBLISHED

Description

In the Linux kernel, the following vulnerability has been resolved: ksmbd: fix use-after-free in ksmbd_session_rpc_open A UAF issue can occur due to a race condition between ksmbd_session_rpc_open() and __session_rpc_close(). Add rpc_lock to the session to protect it.

VendorProductVersions

Linux

Linux

affected
0626e6641f6b467447c81dd7678a69c66f7746cf - < a4348710a7267705b75692dc1a000920481d1d92
affected
0626e6641f6b467447c81dd7678a69c66f7746cf - < 1067361a1cc6ad9cdf7acfc47f90012b72ad1502
affected
0626e6641f6b467447c81dd7678a69c66f7746cf - < 8fb3b6c85b7e3127161623586b62abcc366caa20
affected
0626e6641f6b467447c81dd7678a69c66f7746cf - < 6323fec65fe54b365961fed260dd579191e46121
affected
0626e6641f6b467447c81dd7678a69c66f7746cf - < a1f46c99d9ea411f9bf30025b912d881d36fc709

Linux

Linux

affected
5.15
unaffected
0 - < 5.15
unaffected
6.1.162 - <= 6.1.*
unaffected
6.6.122 - <= 6.6.*
unaffected
6.12.28 - <= 6.12.*

+2 more versions

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now