CVE-2025-21955

Source
https://cve.org/CVERecord?id=CVE-2025-21955
Import Source
https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2025-21955.json
JSON Data
https://api.test.osv.dev/v1/vulns/CVE-2025-21955
Downstream
Published
2025-04-01T15:46:55.724Z
Modified
2026-05-28T03:52:58.579890388Z
Summary
ksmbd: prevent connection release during oplock break notification
Details

In the Linux kernel, the following vulnerability has been resolved:

ksmbd: prevent connection release during oplock break notification

ksmbdwork could be freed when after connection release. Increment rcount of ksmbd_conn to indicate that requests are not finished yet and to not release the connection.

Database specific
{
    "osv_generated_from": "https://github.com/CVEProject/cvelistV5/tree/main/cves/2025/21xxx/CVE-2025-21955.json",
    "cna_assigner": "Linux"
}
References

Affected packages

Git / git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git

Affected ranges

Type
GIT
Repo
https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git
Events
Introduced
0626e6641f6b467447c81dd7678a69c66f7746cf
Fixed
09aeab68033161cb54f194da93e51a11aee6144b
Fixed
a4261bbc33fbf99b99c80aa3a2c5097611802980
Fixed
f17d1c63a76b0fe8e9c78023a86507a3a6d62cfa
Fixed
3aa660c059240e0c795217182cf7df32909dd917

Database specific

source
"https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2025-21955.json"

Linux / Kernel

Package

Name
Kernel

Affected ranges

Type
ECOSYSTEM
Events
Introduced
5.15.0
Fixed
6.6.84
Type
ECOSYSTEM
Events
Introduced
6.7.0
Fixed
6.12.20
Type
ECOSYSTEM
Events
Introduced
6.13.0
Fixed
6.13.8

Database specific

source
"https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2025-21955.json"