cbcvebase.
CVE-2025-38321
published 2025-07-10

CVE-2025-38321: In the Linux kernel, the following vulnerability has been resolved: smb: Log an error when close_all_cached_dirs fails Under low-memory conditions…

PriorityP417medium5.5CVSS 3.1
AVLACLPRLUINSUCNINAH
EPSS
0.18%
7.9th percentile
In the Linux kernel, the following vulnerability has been resolved: smb: Log an error when close_all_cached_dirs fails Under low-memory conditions, close_all_cached_dirs() can't move the dentries to a separate list to dput() them once the locks are dropped. This will result in a "Dentry still in use" error, so add an error message that makes it clear this is what happened: [ 495.281119] CIFS: VFS: \\otters.example.com\share Out of memory while dropping dentries [ 495.281595] ------------[ cut here ]------------ [ 495.281887] BUG: Dentry ffff888115531138{i=78,n=/} still in use (2) [unmount of cifs cifs] [ 495.282391] WARNING: CPU: 1 PID: 2329 at fs/dcache.c:1536 umount_check+0xc8/0xf0 Also, bail out of looping through all tcons as soon as a single allocation fails, since we're already in trouble, and kmalloc() attempts for subseqeuent tcons are likely to fail just like the first one did.

Affected

29 ranges· showing 25
VendorProductVersion rangeFixed in
debianlinux< linux 6.12.35-1 (forky)linux 6.12.35-1 (forky)
linuxlinux
linuxlinux
linuxlinux>= 3fa640d035e5ae526769615c35cb9ed4be6e3662 < 4479db143390bdcadc1561292aab579cdfa9f6c64479db143390bdcadc1561292aab579cdfa9f6c6
linuxlinux>= 3fa640d035e5ae526769615c35cb9ed4be6e3662 < a2182743a8b4969481f64aec4908ff162e8a206ca2182743a8b4969481f64aec4908ff162e8a206c
linuxlinux>= 548812afd96982a76a93ba76c0582ea670c40d9e < 43f26094d6702e494e800532c3f1606e7a68eb3043f26094d6702e494e800532c3f1606e7a68eb30
linuxlinux>= 6.11.11 < 6.126.12
linuxlinux>= 6.12.2 < 6.12.356.12.35
linuxlinux>= 6.6.64 < 6.6.956.6.95
linuxlinux>= 73934e535cffbda1490fa97d82690a0f9aa73e94 < b8ced2b9a23a1a2c1e0ed8d0d02512e51bdf38dab8ced2b9a23a1a2c1e0ed8d0d02512e51bdf38da
linuxlinux_kernel< 6.6.956.6.95
linuxlinux_kernel
linuxlinux_kernel
linuxlinux_kernel>= 0 < 6.12.35-16.12.35-1
linuxlinux_kernel>= 0 < 6.12.35-16.12.35-1
linuxlinux_kernel>= 0 < 6.8.0-100.1006.8.0-100.100
linuxlinux_kernel>= 6.13 < 6.15.46.15.4
linuxlinux_kernel>= 6.7 < 6.12.356.12.35
msrcazl3_kernel_6.6.92.2-2_on_azure_linux_3.0
msrccbl2_kernel_5.15.186.1-1_on_cbl_mariner_2.0
ubuntulinux-aws
ubuntulinux-aws-6.8
ubuntulinux-gkeop
ubuntulinux-nvidia
ubuntulinux-nvidia-6.8

CVSS provenance

nvdv3.15.5MEDIUMCVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
osv5.6MEDIUM
vendor_ubuntu5.6MEDIUM
vendor_debian5.5LOW
vendor_msrc5.5MEDIUM
vendor_redhat5.5MEDIUM
Stop checking back — get the weekly exploitation signal.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.