CVE-2025-21944

MEDIUM

Linux Kernel 5.15-6.1.130, 6.2-6.6.82, 6.7-6.12.18, 6.13-6.13.6 - Denial of Service via SMB2 Lock Flag Handling

Title source: llm
STIX 2.1

Description

In the Linux kernel, the following vulnerability has been resolved: ksmbd: fix bug on trap in smb2_lock If lock count is greater than 1, flags could be old value. It should be checked with flags of smb_lock, not flags. It will cause bug-on trap from locks_free_lock in error handling routine.

Scores

CVSS v3 5.5
EPSS 0.0013
EPSS Percentile 2.6%
Attack Vector LOCAL
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H

Details

CWE
CWE-667
Status published
Products (18)
linux/Kernel 5.15.0 - 6.1.131linux
linux/Kernel 6.13.0 - 6.13.7linux
linux/Kernel 6.2.0 - 6.6.83linux
linux/Kernel 6.7.0 - 6.12.19linux
Linux/Linux < 5.15
Linux/Linux 0626e6641f6b467447c81dd7678a69c66f7746cf - 11e0e74e14f1832a95092f2c98ed3b99f57797ee
Linux/Linux 0626e6641f6b467447c81dd7678a69c66f7746cf - 2b70e3ac79eacbdf32571f7af48dd81cdd957ca8
Linux/Linux 0626e6641f6b467447c81dd7678a69c66f7746cf - 8994f0ce8259f812b4f4a681d8298c6ff682efaa
Linux/Linux 0626e6641f6b467447c81dd7678a69c66f7746cf - dbcd7fdd86f77529210fe8978154a81cd479844c
Linux/Linux 0626e6641f6b467447c81dd7678a69c66f7746cf - e26e2d2e15daf1ab33e0135caf2304a0cfa2744b
... and 8 more
Published Apr 01, 2025
Tracked Since Feb 18, 2026