CVE-2025-40285 — Linux vulnerability
33 documents7 sources
Severity
3.2LOWOSV
No vectorEPSS
0.1%
top 84.59%
CISA KEV
Not in KEV
Exploit
No known exploits
Affected products
Timeline
PublishedDec 6
Latest updateApr 9
Description
In the Linux kernel, the following vulnerability has been resolved:
smb/server: fix possible refcount leak in smb2_sess_setup()
Reference count of ksmbd_session will leak when session need reconnect.
Fix this by adding the missing ksmbd_user_session_put().
Affected Packages7 packages
▶CVEListV5linux/linux37a0e2b362b3150317fb6e2139de67b1e29ae5ff — 6fc935f798d44a8eb8a5e6659198399fbf57b981+6