CVE-2025-39942

MEDIUM

Linux Kernel 5.15.1-6.1.153, 6.2.0-6.6.107, 6.7.0-6.12.48, 6.13.0-6.16.8 - DoS via SMB Direct Fragmented Receive

Title source: llm
STIX 2.1

Description

In the Linux kernel, the following vulnerability has been resolved: ksmbd: smbdirect: verify remaining_data_length respects max_fragmented_recv_size This is inspired by the check for data_offset + data_length.

Scores

CVSS v3 5.5
EPSS 0.0014
EPSS Percentile 3.5%
Attack Vector LOCAL
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H

Details

Status published
Products (19)
linux/Kernel 5.15.0 - 6.1.154linux
linux/Kernel 6.13.0 - 6.16.9linux
linux/Kernel 6.2.0 - 6.6.108linux
linux/Kernel 6.7.0 - 6.12.49linux
Linux/Linux < 5.15
Linux/Linux 2ea086e35c3d726a3bacd0a971c1f02a50e98206 - 196a3a7676d726ee67621ea2bf3b7815ac2685b4
Linux/Linux 2ea086e35c3d726a3bacd0a971c1f02a50e98206 - 9644798294c7287e65a7b26e35aa6d2ce3345bcc
Linux/Linux 2ea086e35c3d726a3bacd0a971c1f02a50e98206 - c64b915bb3d9339adcae5db4be2c35ffbef5e615
Linux/Linux 2ea086e35c3d726a3bacd0a971c1f02a50e98206 - d3cb3f209d35c44b7ee74f77ed27ebb28995b9ce
Linux/Linux 2ea086e35c3d726a3bacd0a971c1f02a50e98206 - e1868ba37fd27c6a68e31565402b154beaa65df0
... and 9 more
Published Oct 04, 2025
Tracked Since Feb 18, 2026