CVE-2023-54260

Source
https://cve.org/CVERecord?id=CVE-2023-54260
Import Source
https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2023-54260.json
JSON Data
https://api.test.osv.dev/v1/vulns/CVE-2023-54260
Downstream
Related
Published
2025-12-30T12:15:54.205Z
Modified
2026-03-20T12:33:33.559492Z
Summary
cifs: Fix lost destroy smbd connection when MR allocate failed
Details

In the Linux kernel, the following vulnerability has been resolved:

cifs: Fix lost destroy smbd connection when MR allocate failed

If the MR allocate failed, the smb direct connection info is NULL, then smbd_destroy() will directly return, then the connection info will be leaked.

Let's set the smb direct connection info to the server before call smbd_destroy().

Database specific
{
    "osv_generated_from": "https://github.com/CVEProject/cvelistV5/tree/main/cves/2023/54xxx/CVE-2023-54260.json",
    "cna_assigner": "Linux"
}
References

Affected packages

Git / git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git

Affected ranges

Type
GIT
Repo
https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git
Events
Introduced
c7398583340a6d82b8bb7f7f21edcde27dc6a898
Fixed
d303e25887127364a6765eaf7ac68aa2bac518a9
Fixed
324c0c34fff1affd436e509325cb46739209704e
Fixed
caac205e0d5b44c4c23a10c6c0976d50ebe16ac2
Fixed
46cd6c639cddba2bd2d810ceb16bb20374ad75b0
Fixed
c51ae01104b318bf15f3c5097faba5c72addba7a
Fixed
04b7e13b8a13264282f874db5378fc3d3253cfac
Fixed
e9d3401d95d62a9531082cd2453ed42f2740e3fd

Database specific

source
"https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2023-54260.json"

Linux / Kernel

Package

Name
Kernel

Affected ranges

Type
ECOSYSTEM
Events
Introduced
4.16.0
Fixed
4.19.276
Type
ECOSYSTEM
Events
Introduced
4.20.0
Fixed
5.4.235
Type
ECOSYSTEM
Events
Introduced
5.5.0
Fixed
5.10.173
Type
ECOSYSTEM
Events
Introduced
5.11.0
Fixed
5.15.99
Type
ECOSYSTEM
Events
Introduced
5.16.0
Fixed
6.1.16
Type
ECOSYSTEM
Events
Introduced
6.2.0
Fixed
6.2.3

Database specific

source
"https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2023-54260.json"