We use these services and cookies to improve your user experience. You may opt out if you wish, however, this may limit some features on this site.

Please see our statement on Data Privacy.

Crisp.chat (Helpdesk and Chat)

Ok

THREATINT
PUBLISHED

CVE-2025-37962

ksmbd: fix memory leak in parse_lease_state()



Description

In the Linux kernel, the following vulnerability has been resolved: ksmbd: fix memory leak in parse_lease_state() The previous patch that added bounds check for create lease context introduced a memory leak. When the bounds check fails, the function returns NULL without freeing the previously allocated lease_ctx_info structure. This patch fixes the issue by adding kfree(lreq) before returning NULL in both boundary check cases.

Reserved 2025-04-16 | Published 2025-05-20 | Updated 2025-05-26 | Assigner Linux

Product status

Default status
unaffected

629dd37acc336ad778979361c351e782053ea284 before facf22c1a394c1e023dab5daf9a494f722771e1c
affected

60b7207893a8a06c78441934931a08fdad63f18e before af9e2d4732a548db8f6f5a90c2c20a789a3d7240
affected

800c482c9ef5910f05e3a713943c67cc6c1d4939 before 2148d34371b06dac696c0497a98a6bf905a51650
affected

9a1b6ea955e6c7b29939a6d98701202f9d9644ec before 829e19ef741d9e9932abdc3bee5466195e0852cf
affected

bab703ed8472aa9d109c5f8c1863921533363dae before eb4447bcce915b43b691123118893fca4f372a8f
affected

a41cd52f00907a040ca22c73d4805bb79b0d0972
affected

Default status
unaffected

6.1.134 before 6.1.139
affected

6.6.87 before 6.6.91
affected

6.12.23 before 6.12.29
affected

6.14.2 before 6.14.7
affected

References

git.kernel.org/...c/facf22c1a394c1e023dab5daf9a494f722771e1c

git.kernel.org/...c/af9e2d4732a548db8f6f5a90c2c20a789a3d7240

git.kernel.org/...c/2148d34371b06dac696c0497a98a6bf905a51650

git.kernel.org/...c/829e19ef741d9e9932abdc3bee5466195e0852cf

git.kernel.org/...c/eb4447bcce915b43b691123118893fca4f372a8f

cve.org (CVE-2025-37962)

nvd.nist.gov (CVE-2025-37962)

Download JSON

Share this page
https://cve.threatint.eu/CVE/CVE-2025-37962

Support options

Helpdesk Chat, Email, Knowledgebase