cbcvebase.
CVE-2025-21967
published 2025-04-01

CVE-2025-21967: In the Linux kernel, the following vulnerability has been resolved: ksmbd: fix use-after-free in ksmbd_free_work_struct ->interim_entry of ksmbd_work could be…

PriorityP338high7.8CVSS 3.1
AVLACLPRLUINSUCHIHAH
EPSS
0.34%
27.1th percentile
In the Linux kernel, the following vulnerability has been resolved: ksmbd: fix use-after-free in ksmbd_free_work_struct ->interim_entry of ksmbd_work could be deleted after oplock is freed. We don't need to manage it with linked list. The interim request could be immediately sent whenever a oplock break wait is needed.

Affected

20 ranges
VendorProductVersion rangeFixed in
debianlinux< linux 6.12.20-1 (forky)linux 6.12.20-1 (forky)
linuxlinux
linuxlinux>= 0626e6641f6b467447c81dd7678a69c66f7746cf < fb776765bfc21d5e4ed03bb3d4406c2b86ff1ac3fb776765bfc21d5e4ed03bb3d4406c2b86ff1ac3
linuxlinux>= 0626e6641f6b467447c81dd7678a69c66f7746cf < 62746ae3f5414244a96293e3b017be637b64128062746ae3f5414244a96293e3b017be637b641280
linuxlinux>= 0626e6641f6b467447c81dd7678a69c66f7746cf < eb51f6f59d19b92f6fe84d3873f958495ab32f0aeb51f6f59d19b92f6fe84d3873f958495ab32f0a
linuxlinux>= 0626e6641f6b467447c81dd7678a69c66f7746cf < bb39ed47065455604729404729d9116868638d31bb39ed47065455604729404729d9116868638d31
linuxlinux_kernel
linuxlinux_kernel
linuxlinux_kernel
linuxlinux_kernel
linuxlinux_kernel
linuxlinux_kernel
linuxlinux_kernel>= 0 < 6.12.20-16.12.20-1
linuxlinux_kernel>= 0 < 6.12.20-16.12.20-1
linuxlinux_kernel>= 0 < 6.8.0-84.846.8.0-84.84
linuxlinux_kernel>= 5.15 < 6.6.846.6.84
linuxlinux_kernel>= 6.13 < 6.13.86.13.8
linuxlinux_kernel>= 6.7 < 6.12.206.12.20
msrcazl3_kernel_6.6.82.1-1_on_azure_linux_3.0
msrccbl2_kernel_5.15.182.1-1_on_cbl_mariner_2.0

CVSS provenance

nvdv3.17.8HIGHCVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
osv7.8HIGH
vendor_debian7.8HIGH
vendor_msrc7.8HIGH
vendor_redhat7.8HIGH
vendor_ubuntu5.9MEDIUM
Stop checking back — get the weekly exploitation signal.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.