cbcvebase.
CVE-2023-54260
published 2025-12-30

CVE-2023-54260: In the Linux kernel, the following vulnerability has been resolved: cifs: Fix lost destroy smbd connection when MR allocate failed If the MR allocate failed…

PriorityP419low3.3
EPSS
0.18%
7.7th percentile
In the Linux kernel, the following vulnerability has been resolved: cifs: Fix lost destroy smbd connection when MR allocate failed If the MR allocate failed, the smb direct connection info is NULL, then smbd_destroy() will directly return, then the connection info will be leaked. Let's set the smb direct connection info to the server before call smbd_destroy().

Affected

19 ranges
VendorProductVersion rangeFixed in
debianlinux< linux 6.1.20-1 (bookworm)linux 6.1.20-1 (bookworm)
linuxlinux
linuxlinux>= c7398583340a6d82b8bb7f7f21edcde27dc6a898 < d303e25887127364a6765eaf7ac68aa2bac518a9d303e25887127364a6765eaf7ac68aa2bac518a9
linuxlinux>= c7398583340a6d82b8bb7f7f21edcde27dc6a898 < 324c0c34fff1affd436e509325cb46739209704e324c0c34fff1affd436e509325cb46739209704e
linuxlinux>= c7398583340a6d82b8bb7f7f21edcde27dc6a898 < caac205e0d5b44c4c23a10c6c0976d50ebe16ac2caac205e0d5b44c4c23a10c6c0976d50ebe16ac2
linuxlinux>= c7398583340a6d82b8bb7f7f21edcde27dc6a898 < 46cd6c639cddba2bd2d810ceb16bb20374ad75b046cd6c639cddba2bd2d810ceb16bb20374ad75b0
linuxlinux>= c7398583340a6d82b8bb7f7f21edcde27dc6a898 < c51ae01104b318bf15f3c5097faba5c72addba7ac51ae01104b318bf15f3c5097faba5c72addba7a
linuxlinux>= c7398583340a6d82b8bb7f7f21edcde27dc6a898 < 04b7e13b8a13264282f874db5378fc3d3253cfac04b7e13b8a13264282f874db5378fc3d3253cfac
linuxlinux>= c7398583340a6d82b8bb7f7f21edcde27dc6a898 < e9d3401d95d62a9531082cd2453ed42f2740e3fde9d3401d95d62a9531082cd2453ed42f2740e3fd
linuxlinux_kernel>= 0 < 5.10.178-15.10.178-1
linuxlinux_kernel>= 0 < 6.1.20-16.1.20-1
linuxlinux_kernel>= 0 < 6.1.20-16.1.20-1
linuxlinux_kernel>= 0 < 6.1.20-16.1.20-1
linuxlinux_kernel>= 4.16.0 < 4.19.2764.19.276
linuxlinux_kernel>= 4.20.0 < 5.4.2355.4.235
linuxlinux_kernel>= 5.11.0 < 5.15.995.15.99
linuxlinux_kernel>= 5.16.0 < 6.1.166.1.16
linuxlinux_kernel>= 5.5.0 < 5.10.1735.10.173
linuxlinux_kernel>= 6.2.0 < 6.2.36.2.3
Stop checking back — get the weekly exploitation signal.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.