CVE-2023-53358

HIGH

Linux Kernel 5.15-5.15.145 - Use-After-Free in ksmbd SMB2 Tree Disconnect

Title source: llm
STIX 2.1

Description

In the Linux kernel, the following vulnerability has been resolved: ksmbd: fix racy issue under cocurrent smb2 tree disconnect There is UAF issue under cocurrent smb2 tree disconnect. This patch introduce TREE_CONN_EXPIRE flags for tcon to avoid cocurrent access.

Scores

CVSS v3 7.0
EPSS 0.0016
EPSS Percentile 6.0%
Attack Vector LOCAL
CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H

CISA SSVC

Vulnrichment
Exploitation none
Automatable no
Technical Impact total

Details

CWE
CWE-416
Status published
Products (13)
Linux/Linux < 5.15
Linux/Linux 0626e6641f6b467447c81dd7678a69c66f7746cf - 30210947a343b6b3ca13adc9bfc88e1543e16dd5
Linux/Linux 0626e6641f6b467447c81dd7678a69c66f7746cf - 39366b47a59d46af15ac57beb0996268bf911f6a
Linux/Linux 0626e6641f6b467447c81dd7678a69c66f7746cf - b36295c17fb97424406f0c3ab321b1ccaabb9be8
Linux/Linux 0626e6641f6b467447c81dd7678a69c66f7746cf - bd80d35725a0cf4df9307bfe2f1a3b2cb983d8e6
Linux/Linux 0626e6641f6b467447c81dd7678a69c66f7746cf - dc1c17716c099c90948ebb83e2170dd75a3be6b6
Linux/Linux 5.15
Linux/Linux 5.15.145 - 5.15.*
Linux/Linux 6.1.28 - 6.1.*
Linux/Linux 6.2.15 - 6.2.*
... and 3 more
Published Sep 17, 2025
Tracked Since Feb 18, 2026