CVE-2025-71204
published 2026-02-14CVE-2025-71204: In the Linux kernel, the following vulnerability has been resolved: smb/server: fix refcount leak in parse_durable_handle_context() When the command is a…
PriorityP421medium5.5CVSS 3.1
AVLACLPRLUINSUCNINAH
EPSS
0.28%
20.2th percentile
In the Linux kernel, the following vulnerability has been resolved:
smb/server: fix refcount leak in parse_durable_handle_context()
When the command is a replay operation and -ENOEXEC is returned,
the refcount of ksmbd_file must be released.
Affected
15 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| debian | linux | < linux 6.18.10-1 (forky) | linux 6.18.10-1 (forky) |
| linux | linux | — | — |
| linux | linux | >= 6.6.32 < 6.6.124 | 6.6.124 |
| linux | linux | >= 8df4bcdb0a4232192b2445256c39b787d58ef14d < 07df5ff4f6490a5c96715b7c562e0b2908422e04 | 07df5ff4f6490a5c96715b7c562e0b2908422e04 |
| linux | linux | >= c8efcc786146a951091588e5fa7e3c754850cb3c < 8a15107c4c031fb19737bf2eb4000f847f1d5e4c | 8a15107c4c031fb19737bf2eb4000f847f1d5e4c |
| linux | linux | >= c8efcc786146a951091588e5fa7e3c754850cb3c < 70dd3513ed6ac8c6cab23f72c5b19f44ca89de9d | 70dd3513ed6ac8c6cab23f72c5b19f44ca89de9d |
| linux | linux | >= c8efcc786146a951091588e5fa7e3c754850cb3c < 3296c3012a9d9a27e81e34910384e55a6ff3cff0 | 3296c3012a9d9a27e81e34910384e55a6ff3cff0 |
| linux | linux_kernel | — | — |
| linux | linux_kernel | — | — |
| linux | linux_kernel | — | — |
| linux | linux_kernel | >= 0 < 6.12.73-1 | 6.12.73-1 |
| linux | linux_kernel | >= 0 < 6.18.10-1 | 6.18.10-1 |
| linux | linux_kernel | >= 6.13 < 6.18.10 | 6.18.10 |
| linux | linux_kernel | >= 6.6.32 < 6.6.124 | 6.6.124 |
| linux | linux_kernel | >= 6.9 < 6.12.70 | 6.12.70 |
CVSS provenance
nvdv3.15.5MEDIUMCVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
osv5.5MEDIUM
vendor_debian5.5LOW
vendor_redhat5.5MEDIUM
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
OSV
CVE-2025-71204: In the Linux kernel, the following vulnerability has been resolved: smb/server: fix refcount leak in parse_durable_handle_context() When the command i
osv·2026-02-14·CVSS 5.5
CVE-2025-71204 [MEDIUM] CVE-2025-71204: In the Linux kernel, the following vulnerability has been resolved: smb/server: fix refcount leak in parse_durable_handle_context() When the command i
In the Linux kernel, the following vulnerability has been resolved: smb/server: fix refcount leak in parse_durable_handle_context() When the command is a replay operation and -ENOEXEC is returned, the refcount of ksmbd_file must be released.
GHSA
GHSA-rm73-jpvr-q26q: In the Linux kernel, the following vulnerability has been resolved:
smb/server: fix refcount leak in parse_durable_handle_context()
When the command
ghsa_unreviewed·2026-02-14
CVE-2025-71204 [MEDIUM] GHSA-rm73-jpvr-q26q: In the Linux kernel, the following vulnerability has been resolved:
smb/server: fix refcount leak in parse_durable_handle_context()
When the command
In the Linux kernel, the following vulnerability has been resolved:
smb/server: fix refcount leak in parse_durable_handle_context()
When the command is a replay operation and -ENOEXEC is returned,
the refcount of ksmbd_file must be released.
Red Hat
kernel: smb/server: fix refcount leak in parse_durable_handle_context()
vendor_redhat·2026-02-14·CVSS 5.5
CVE-2025-71204 [MEDIUM] CWE-911 kernel: smb/server: fix refcount leak in parse_durable_handle_context()
kernel: smb/server: fix refcount leak in parse_durable_handle_context()
In the Linux kernel, the following vulnerability has been resolved:
smb/server: fix refcount leak in parse_durable_handle_context()
When the command is a replay operation and -ENOEXEC is returned,
the refcount of ksmbd_file must be released.
A reference count leak flaw was found in the Linux kernel's ksmbd in-kernel SMB server. In the parse_durable_handle_context() function, when a command is detected as a replay operation and returns -ENOEXEC, the reference count of the ksmbd_file structure is not properly released. This leads to a resource leak that could result in gradual memory exhaustion over time.
Statement: This flaw affects the ksmbd in-kernel SMB server, which is not widely deployed in production environmen
Debian
CVE-2025-71204: linux - In the Linux kernel, the following vulnerability has been resolved: smb/server:...
vendor_debian·2025·CVSS 5.5
CVE-2025-71204 [MEDIUM] CVE-2025-71204: linux - In the Linux kernel, the following vulnerability has been resolved: smb/server:...
In the Linux kernel, the following vulnerability has been resolved: smb/server: fix refcount leak in parse_durable_handle_context() When the command is a replay operation and -ENOEXEC is returned, the refcount of ksmbd_file must be released.
Scope: local
bookworm: resolved
bullseye: resolved
forky: resolved (fixed in 6.18.10-1)
sid: resolved (fixed in 6.18.10-1)
trixie: resolved (fixed in 6.12.73-1)
No detection rules found.
No public exploits indexed.
2026-02-14
Published