cbcvebase.
CVE-2025-68817
published 2026-01-13

CVE-2025-68817: In the Linux kernel, the following vulnerability has been resolved: ksmbd: fix use-after-free in ksmbd_tree_connect_put under concurrency Under high…

PriorityP340high7.8CVSS 3.1
AVLACLPRLUINSUCHIHAH
EPSS
0.40%
32.8th percentile
In the Linux kernel, the following vulnerability has been resolved: ksmbd: fix use-after-free in ksmbd_tree_connect_put under concurrency Under high concurrency, A tree-connection object (tcon) is freed on a disconnect path while another path still holds a reference and later executes *_put()/write on it.

Affected

64 ranges· showing 25
VendorProductVersion rangeFixed in
debianlinux< linux 6.1.162-1 (bookworm)linux 6.1.162-1 (bookworm)
debianlinux-6.1< linux 6.1.162-1 (bookworm)linux 6.1.162-1 (bookworm)
linuxlinux
linuxlinux>= 33b235a6e6ebe0f05f3586a71e8d281d00f71e2e < d64977495e44855f2b28d8ce56107c963a7a50e4d64977495e44855f2b28d8ce56107c963a7a50e4
linuxlinux>= 33b235a6e6ebe0f05f3586a71e8d281d00f71e2e < 21a3d01fc6db5129f81edb0ab7cb94fd758bcbea21a3d01fc6db5129f81edb0ab7cb94fd758bcbea
linuxlinux>= 33b235a6e6ebe0f05f3586a71e8d281d00f71e2e < 063cbbc6f595ea36ad146e1b7d2af820894beb21063cbbc6f595ea36ad146e1b7d2af820894beb21
linuxlinux>= 33b235a6e6ebe0f05f3586a71e8d281d00f71e2e < b39a1833cc4a2755b02603eec3a71a85e9dff926b39a1833cc4a2755b02603eec3a71a85e9dff926
linuxlinux>= 5.15.145 < 5.15.1995.15.199
linuxlinux>= 6.1.71 < 6.1.1606.1.160
linuxlinux>= 7b58ee8d0b91359554cf219cd4f33872ea2afd66 < d092de8a26c952379ded8e6b0bda31d89befac1ad092de8a26c952379ded8e6b0bda31d89befac1a
linuxlinux>= dd45db4d9bbc8f122a9b4db5ce94ae29fcf03d3c < 446beed646b2e426dd53d27358365f8678e1dd01446beed646b2e426dd53d27358365f8678e1dd01
linuxlinux_kernel
linuxlinux_kernel
linuxlinux_kernel
linuxlinux_kernel
linuxlinux_kernel>= 0 < 6.1.162-16.1.162-1
linuxlinux_kernel>= 0 < 6.12.69-16.12.69-1
linuxlinux_kernel>= 0 < 6.18.3-16.18.3-1
linuxlinux_kernel>= 5.15.145 < 5.15.1995.15.199
linuxlinux_kernel>= 6.1.71 < 6.1.1606.1.160
linuxlinux_kernel>= 6.13 < 6.18.36.18.3
linuxlinux_kernel>= 6.6.1 < 6.6.1206.6.120
linuxlinux_kernel>= 6.7 < 6.12.646.12.64
ubuntulinux-aws
ubuntulinux-aws-6.17

CVSS provenance

nvdv3.17.8HIGHCVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
osv7.8HIGH
vendor_debian7.8HIGH
vendor_redhat7.8HIGH
vendor_ubuntu7.8HIGH
Stop checking back — get the weekly exploitation signal.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.