← All CVEs

CVE-2025-22037

high · 7.5

In the Linux kernel, the following vulnerability has been resolved: ksmbd: fix null pointer dereference in alloc_preauth_hash() The Client send malformed smb2 negotiate request. ksmbd return error response. Subsequently, the client can send smb2 session setup even thought conn->preauth_info is not allocated. This patch add KSMBD_SESS_NEED_SETUP status of connection to ignore session setup request if smb2 negotiate phase is not complete.

7.5
CVSS
67.6%
EPSS (exploit prob.)
99th
EPSS percentile
2025-04-16
Published

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H

Weaknesses

CWE-476

Affected products

VendorProductAffected versions
linuxlinux_kernel< 6.12.23
linuxlinux_kernel>= 6.13, < 6.13.11
linuxlinux_kernel>= 6.14, < 6.14.2

Check a specific version with /api/v1/cve/match.

References

Query this programmatically:

curl https://evil-db.io/api/v1/cve/CVE-2025-22037