Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1336 CNY

100%

CVE-2025-21660— ksmbd: fix unexpectedly changed path in ksmbd_vfs_kern_path_locked

Quick assessment

Affected
Linux Linux
Exploitation
No confirmed in-the-wild exploitation; assess based on exposure
Recommended action
Check the vendor advisory and references for a fixed version. If immediate upgrade is impossible, restrict exposure and increase monitoring.

Linux kernel是美国Linux基金会的开源操作系统Linux所使用的内核。 Linux kernel存在安全漏洞,该漏洞源于ksmbd模块中ksmbd_vfs_kern_path_locked函数在错误时未恢复路径缓冲区。这可能导致路径错误或文件系统操作失败。

AI Predicted 7.8 Difficulty: Moderate EPSS 0.20% · P10

Possible ATT&CK Techniques 1 AI

T1053 · Scheduled Task/Job

Affected Version Matrix 16

VendorProduct Version RangeStatus
Linux Linux d1b2d2a9c912fc7b788985fbaf944e80f4b3f2af< 13e41c58c74baa71f34c0830eaa3c29d53a6e964 affected
6ab95e27b77730de3fa2d601db3764490c5eede2< 65b31b9d992c0fb0685c51a0cf09993832734fc4 affected
c5a709f08d40b1a082e44ffcde1aea4d2822ddd5< 51669f4af5f7959565b48e55691ba92fabf5c587 affected
c5a709f08d40b1a082e44ffcde1aea4d2822ddd5< 2ac538e40278a2c0c051cca81bcaafc547d61372 affected
d205cb1a13b37b2660df70a972dedc8c4ba1c2e8 affected
c1e27b70e79050530c671b9dab688386c86f039a affected
6.1.113< 6.1.125 affected
6.6.54< 6.6.72 affected
… +8 more rows
Get alerts for future matching vulnerabilities Log in to subscribe

I. Basic Information for CVE-2025-21660

Vulnerability Information

Have questions about the vulnerability? See if Shenlong's analysis helps!
View Shenlong Deep Dive ↗

Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.

Vulnerability Title
ksmbd: fix unexpectedly changed path in ksmbd_vfs_kern_path_locked
Source: CVE Program / CVE List V5
Vulnerability Description
In the Linux kernel, the following vulnerability has been resolved: ksmbd: fix unexpectedly changed path in ksmbd_vfs_kern_path_locked When `ksmbd_vfs_kern_path_locked` met an error and it is not the last entry, it will exit without restoring changed path buffer. But later this buffer may be used as the filename for creation.
Source: CVE Program / CVE List V5
CVSS Information
N/A
Source: CVE Program / CVE List V5
Vulnerability Type
N/A
Source: CVE Program / CVE List V5
Vulnerability Title
Linux kernel 安全漏洞
Source: CNNVD (China National Vulnerability Database)
Vulnerability Description
Linux kernel是美国Linux基金会的开源操作系统Linux所使用的内核。 Linux kernel存在安全漏洞,该漏洞源于ksmbd模块中ksmbd_vfs_kern_path_locked函数在错误时未恢复路径缓冲区。这可能导致路径错误或文件系统操作失败。
Source: CNNVD (China National Vulnerability Database)
CVSS Information
N/A
Source: CNNVD (China National Vulnerability Database)
Vulnerability Type
N/A
Source: CNNVD (China National Vulnerability Database)

Affected Products

Vendor Product Affected Versions CPE Subscribe
Linux Linux d1b2d2a9c912fc7b788985fbaf944e80f4b3f2af ~ 13e41c58c74baa71f34c0830eaa3c29d53a6e964 -
Linux Linux 6.12 -

II. Public POCs for CVE-2025-21660

# POC Description Source Link Shenlong Link
AI-Generated POC Premium

No public POC found.

Login to generate AI POC

III. Intelligence Information for CVE-2025-21660

登录查看更多情报信息。

Patches & Fixes for CVE-2025-21660 (4)

Same Patch Batch · Linux · 2025-01-21 · 25 CVEs total

CVE-2025-21663 10.0 CRITICAL net: stmmac: dwmac-tegra: Read iommu stream id from device tree
CVE-2024-57932 9.8 CRITICAL gve: guard XDP xmit NDO on existence of xdp queues
CVE-2024-57936 9.8 CRITICAL RDMA/bnxt_re: Fix max SGEs for the Work Request
CVE-2025-21659 8.1 HIGH netdev: prevent accessing NAPI instances from another namespace
CVE-2025-21664 7.8 HIGH dm thin: make get_first_thin use rcu-safe list first function
CVE-2025-21661 7.8 HIGH gpio: virtuser: fix missing lookup table cleanups
CVE-2024-57945 7.8 HIGH riscv: mm: Fix the out of bound issue of vmemmap address
CVE-2024-57943 exfat: fix the new buffer was not zeroed before writing
CVE-2024-57946 virtio-blk: don't keep queue frozen during system suspend
CVE-2025-21662 net/mlx5: Fix variable not being completed when function returns
CVE-2025-21658 btrfs: avoid NULL pointer dereference if no valid extent tree
CVE-2025-21657 sched_ext: Replace rq_lock() to raw_spin_rq_lock() in scx_ops_bypass()
CVE-2025-21656 hwmon: (drivetemp) Fix driver producing garbage data when SCSI errors occur
CVE-2024-57944 iio: adc: ti-ads1298: Add NULL check in ads1298_init
CVE-2024-57930 tracing: Have process_string() also allow arrays
CVE-2024-57942 netfs: Fix ceph copy to cache on write-begin
CVE-2024-57941 netfs: Fix the (non-)cancellation of copy when cache is temporarily disabled
CVE-2024-57940 exfat: fix the infinite loop in exfat_readdir()
CVE-2024-57939 riscv: Fix sleeping in invalid context in die()
CVE-2024-57938 net/sctp: Prevent autoclose integer overflow in sctp_association_init()

Showing top 20 of 25 CVEs. View all on vendor page &rarr; →

IV. Related Vulnerabilities

V. Comments for CVE-2025-21660

No comments yet


Leave a comment