CVE-2023-53794

Linux Kernel 4.7.0-6.1.46, 6.2.0-6.4.11 - Use-After-Free in SMB2 Reconnect

Title source: llm
STIX 2.1

Description

In the Linux kernel, the following vulnerability has been resolved: cifs: fix session state check in reconnect to avoid use-after-free issue Don't collect exiting session in smb2_reconnect_server(), because it will be released soon. Note that the exiting session will stay in server->smb_ses_list until it complete the cifs_free_ipc() and logoff() and then delete itself from the list.

Scores

EPSS 0.0018
EPSS Percentile 7.4%

Details

Status published
Products (26)
linux/Kernel 4.7.0 - 6.1.47linux
linux/Kernel 6.2.0 - 6.4.12linux
Linux/Linux < 4.7
Linux/Linux 2e4378ee60049b752c9dce16f62ce6fbd11b379a
Linux/Linux 3.10.103 - 3.11
Linux/Linux 3.12.63 - 3.13
Linux/Linux 3.14.74 - 3.15
Linux/Linux 3.16.37 - 3.17
Linux/Linux 3.18.37 - 3.19
Linux/Linux 4.1.28 - 4.2
... and 16 more
Published Dec 09, 2025
Tracked Since Feb 18, 2026