CVE-2025-38321

MEDIUM

Linux Kernel < 6.6.95, 6.7.0-6.12.35, 6.13.0-6.15.4 - Denial of Service via Memory Exhaustion in SMB Dentry Handling

Title source: llm
STIX 2.1

Description

In the Linux kernel, the following vulnerability has been resolved: smb: Log an error when close_all_cached_dirs fails Under low-memory conditions, close_all_cached_dirs() can't move the dentries to a separate list to dput() them once the locks are dropped. This will result in a "Dentry still in use" error, so add an error message that makes it clear this is what happened: [ 495.281119] CIFS: VFS: \\otters.example.com\share Out of memory while dropping dentries [ 495.281595] ------------[ cut here ]------------ [ 495.281887] BUG: Dentry ffff888115531138{i=78,n=/} still in use (2) [unmount of cifs cifs] [ 495.282391] WARNING: CPU: 1 PID: 2329 at fs/dcache.c:1536 umount_check+0xc8/0xf0 Also, bail out of looping through all tcons as soon as a single allocation fails, since we're already in trouble, and kmalloc() attempts for subseqeuent tcons are likely to fail just like the first one did.

Scores

CVSS v3 5.5
EPSS 0.0016
EPSS Percentile 6.0%
Attack Vector LOCAL
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H

Details

Status published
Products (19)
linux/Kernel < 6.6.95linux
linux/Kernel 6.13.0 - 6.15.4linux
linux/Kernel 6.7.0 - 6.12.35linux
Linux/Linux < 6.13
Linux/Linux 3fa640d035e5ae526769615c35cb9ed4be6e3662 - 4479db143390bdcadc1561292aab579cdfa9f6c6
Linux/Linux 3fa640d035e5ae526769615c35cb9ed4be6e3662 - a2182743a8b4969481f64aec4908ff162e8a206c
Linux/Linux 548812afd96982a76a93ba76c0582ea670c40d9e - 43f26094d6702e494e800532c3f1606e7a68eb30
Linux/Linux 6.11.11 - 6.12
Linux/Linux 6.12.2 - 6.12.35
Linux/Linux 6.12.35 - 6.12.*
... and 9 more
Published Jul 10, 2025
Tracked Since Feb 18, 2026