Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2025-38561

Опубликовано: 19 авг. 2025
Источник: nvd
CVSS3: 8.5
EPSS Низкий

Описание

In the Linux kernel, the following vulnerability has been resolved:

ksmbd: fix Preauh_HashValue race condition

If client send multiple session setup requests to ksmbd, Preauh_HashValue race condition could happen. There is no need to free sess->Preauh_HashValue at session setup phase. It can be freed together with session at connection termination phase.

EPSS

Процентиль: 22%
0.00072
Низкий

8.5 High

CVSS3

Дефекты

CWE-362

Связанные уязвимости

CVSS3: 8.5
ubuntu
3 месяца назад

In the Linux kernel, the following vulnerability has been resolved: ksmbd: fix Preauh_HashValue race condition If client send multiple session setup requests to ksmbd, Preauh_HashValue race condition could happen. There is no need to free sess->Preauh_HashValue at session setup phase. It can be freed together with session at connection termination phase.

CVSS3: 5.5
redhat
3 месяца назад

In the Linux kernel, the following vulnerability has been resolved: ksmbd: fix Preauh_HashValue race condition If client send multiple session setup requests to ksmbd, Preauh_HashValue race condition could happen. There is no need to free sess->Preauh_HashValue at session setup phase. It can be freed together with session at connection termination phase.

msrc
2 месяца назад

ksmbd: fix Preauh_HashValue race condition

CVSS3: 8.5
debian
3 месяца назад

In the Linux kernel, the following vulnerability has been resolved: k ...

CVSS3: 8.5
github
3 месяца назад

In the Linux kernel, the following vulnerability has been resolved: ksmbd: fix Preauh_HashValue race condition If client send multiple session setup requests to ksmbd, Preauh_HashValue race condition could happen. There is no need to free sess->Preauh_HashValue at session setup phase. It can be freed together with session at connection termination phase.

EPSS

Процентиль: 22%
0.00072
Низкий

8.5 High

CVSS3

Дефекты

CWE-362