CVE Database
/

CVE-2025-37956

Back to search

CVE-2025-37956

Published: May 20, 2025

Modified: May 11, 2026

PUBLISHED

Description

In the Linux kernel, the following vulnerability has been resolved: ksmbd: prevent rename with empty string Client can send empty newname string to ksmbd server. It will cause a kernel oops from d_alloc. This patch return the error when attempting to rename a file or directory with an empty new name string.

VendorProductVersions

Linux

Linux

affected
0626e6641f6b467447c81dd7678a69c66f7746cf - < 6ee551672c8cf36108b0cfba92ec0c7c28ac3439
affected
0626e6641f6b467447c81dd7678a69c66f7746cf - < c57301e332cc413fe0a7294a90725f4e21e9549d
affected
0626e6641f6b467447c81dd7678a69c66f7746cf - < d7f2c00acb1ef64304fd40ac507e9213ff1d9b5c
affected
0626e6641f6b467447c81dd7678a69c66f7746cf - < 53e3e5babc0963a92d856a5ec0ce92c59f54bc12

Linux

Linux

affected
5.15
unaffected
0 - < 5.15
unaffected
6.6.91 - <= 6.6.*
unaffected
6.12.29 - <= 6.12.*
unaffected
6.14.7 - <= 6.14.*

+1 more versions

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now