cbcvebase.
CVE-2025-22074
published 2025-04-16

CVE-2025-22074: In the Linux kernel, the following vulnerability has been resolved: ksmbd: fix r_count dec/increment mismatch r_count is only increased when there is an oplock…

PriorityP420medium5.5CVSS 3.1
AVLACLPRLUINSUCNINAH
EPSS
0.45%
37.0th percentile
In the Linux kernel, the following vulnerability has been resolved: ksmbd: fix r_count dec/increment mismatch r_count is only increased when there is an oplock break wait, so r_count inc/decrement are not paired. This can cause r_count to become negative, which can lead to a problem where the ksmbd thread does not terminate.

Affected

19 ranges
VendorProductVersion rangeFixed in
debianlinux< linux 6.12.25-1 (forky)linux 6.12.25-1 (forky)
linuxlinux
linuxlinux>= 09aeab68033161cb54f194da93e51a11aee6144b < 4790bcb269e5d6d88200a67c54ae6d627332a3be4790bcb269e5d6d88200a67c54ae6d627332a3be
linuxlinux>= 3aa660c059240e0c795217182cf7df32909dd917 < c2ec33d46b4d1c8085dab5d02e00b21f4f0fb8a9c2ec33d46b4d1c8085dab5d02e00b21f4f0fb8a9
linuxlinux>= 3aa660c059240e0c795217182cf7df32909dd917 < ddb7ea36ba7129c2ed107e2186591128618864e1ddb7ea36ba7129c2ed107e2186591128618864e1
linuxlinux>= 6.12.20 < 6.12.236.12.23
linuxlinux>= 6.13.8 < 6.13.116.13.11
linuxlinux>= 6.6.84 < 6.6.876.6.87
linuxlinux>= a4261bbc33fbf99b99c80aa3a2c5097611802980 < 457db486203c90e10c3efc87fd45cc7000b1cd36457db486203c90e10c3efc87fd45cc7000b1cd36
linuxlinux>= f17d1c63a76b0fe8e9c78023a86507a3a6d62cfa < 20378cf48359f39dee0ef9b61470ebe77bd49c0d20378cf48359f39dee0ef9b61470ebe77bd49c0d
linuxlinux_kernel
linuxlinux_kernel
linuxlinux_kernel
linuxlinux_kernel>= 0 < 6.12.25-16.12.25-1
linuxlinux_kernel>= 0 < 6.12.25-16.12.25-1
linuxlinux_kernel>= 0 < 6.14.0-22.226.14.0-22.22
linuxlinux_kernel>= 6.12.20 < 6.12.236.12.23
linuxlinux_kernel>= 6.13.8 < 6.13.116.13.11
linuxlinux_kernel>= 6.6.84 < 6.6.876.6.87

CVSS provenance

nvdv3.15.5MEDIUMCVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
osv5.5MEDIUM
vendor_debian5.5LOW
vendor_redhat5.5MEDIUM
Stop checking back — get the weekly exploitation signal.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.