CVE Wiki Pixee · CVE intelligence
← All CVEs

CVE-2025-38561

Critical · CVSS 9.8
CVSS
9.8
nvd
EPSS
KEV
No
Class
oss containerizable
CWE-362, CWE-362

Description

In the Linux kernel, the following vulnerability has been resolved: ksmbd: fix Preauh_HashValue race condition If client send multiple session setup requests to ksmbd, Preauh_HashValue race condition could happen. There is no need to free sess->Preauh_HashValue at session setup phase. It can be freed together with session at connection termination phase.

Affected packages

Linux Kernel 5.15.0 → 6.1.148
Linux Kernel 6.13.0 → 6.15.10
Linux Kernel 6.16.0 → 6.16.1
Linux Kernel 6.2.0 → 6.6.102
Linux Kernel 6.7.0 → 6.12.42

References

Status: profiled · ingested 2026-07-30T12:00:00.000Z