Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1336 CNY

100%

CVE-2025-40103— smb: client: Fix refcount leak for cifs_sb_tlink

AI Predicted 5.0 Difficulty: Theoretical EPSS 0.19% · P9

Possible ATT&CK Techniques 1AI

T1499 · Endpoint Denial of Service

Affected Version Matrix 14

VendorProductVersion RangeStatus
LinuxLinux8ceb984379462f94bdebef3288d569c6e1f912ea< d3c8ea197055c260119a13360e8202a27e53e1e4affected
8ceb984379462f94bdebef3288d569c6e1f912ea< 790282abe9d805f08618c1c24ea2529e7259b692affected
8ceb984379462f94bdebef3288d569c6e1f912ea< d7dd034c14928306db1b46be277ae439b84dacf9affected
8ceb984379462f94bdebef3288d569c6e1f912ea< e15605b68b490186da2ad8029c0351a9cfb0b9afaffected
8ceb984379462f94bdebef3288d569c6e1f912ea< 896bb31e1416f582503db1350cf1bd10dc64e5a6affected
8ceb984379462f94bdebef3288d569c6e1f912ea< c2b77f42205ef485a647f62082c442c1cd69d3fcaffected
3.7affected
< 3.7unaffected
… +6 more rows
Get alerts for future matching vulnerabilitiesLog in to subscribe

I. Basic Information for CVE-2025-40103

Vulnerability Information

Have questions about the vulnerability? See if Shenlong's analysis helps!
View Shenlong Deep Dive ↗

Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.

Vulnerability Title
smb: client: Fix refcount leak for cifs_sb_tlink
Source: CVE Program / CVE List V5
Vulnerability Description
In the Linux kernel, the following vulnerability has been resolved: smb: client: Fix refcount leak for cifs_sb_tlink Fix three refcount inconsistency issues related to `cifs_sb_tlink`. Comments for `cifs_sb_tlink` state that `cifs_put_tlink()` needs to be called after successful calls to `cifs_sb_tlink()`. Three calls fail to update refcount accordingly, leading to possible resource leaks.
Source: CVE Program / CVE List V5
CVSS Information
N/A
Source: CVE Program / CVE List V5
Vulnerability Type
N/A
Source: CVE Program / CVE List V5
Vulnerability Title
Linux kernel 安全漏洞
Source: CNNVD (China National Vulnerability Database)
Vulnerability Description
Linux kernel是美国Linux基金会的开源操作系统Linux所使用的内核。 Linux kernel存在安全漏洞,该漏洞源于cifs_sb_tlink函数存在引用计数泄漏问题,可能导致资源泄漏。
Source: CNNVD (China National Vulnerability Database)
CVSS Information
N/A
Source: CNNVD (China National Vulnerability Database)
Vulnerability Type
N/A
Source: CNNVD (China National Vulnerability Database)

Affected Products

VendorProductAffected VersionsCPESubscribe
LinuxLinux 8ceb984379462f94bdebef3288d569c6e1f912ea ~ d3c8ea197055c260119a13360e8202a27e53e1e4 -
LinuxLinux 3.7 -

II. Public POCs for CVE-2025-40103

#POC DescriptionSource LinkShenlong Link
AI-Generated POCPremium

No public POC found.

Login to generate AI POC

III. Intelligence Information for CVE-2025-40103

登录查看更多情报信息。

Same Patch Batch · Linux · 2025-10-30 · 20 CVEs total

CVE-2025-400999.4 CRITICALcifs: parse_dfs_referrals: prevent oob on malformed input
CVE-2025-400957.8 HIGHusb: gadget: f_rndis: Refactor bind path to use __free()
CVE-2025-401057.8 HIGHvfs: Don't leak disconnected dentries on umount
CVE-2025-401047.8 HIGHixgbevf: fix mailbox API compatibility by negotiating supported features
CVE-2025-400967.8 HIGHdrm/sched: Fix potential double free in drm_sched_job_add_resv_dependencies
CVE-2025-400947.8 HIGHusb: gadget: f_acm: Refactor bind path to use __free()
CVE-2025-400937.8 HIGHusb: gadget: f_ecm: Refactor bind path to use __free()
CVE-2025-400927.8 HIGHusb: gadget: f_ncm: Refactor bind path to use __free()
CVE-2025-400907.5 HIGHksmbd: fix recursive locking in RPC handle list access
CVE-2025-400877.5 HIGHNFSD: Define a proc_layoutcommit for the FlexFiles layout type
CVE-2025-400887.1 HIGHhfsplus: fix slab-out-of-bounds read in hfsplus_strcasecmp()
CVE-2025-40086drm/xe: Don't allow evicting of BOs in same VM in array of VM binds
CVE-2025-40091ixgbe: fix too early devlink_free() in ixgbe_remove()
CVE-2025-40097ALSA: hda: Fix missing pointer check in hda_component_manager_init function
CVE-2025-40098ALSA: hda: cs35l41: Fix NULL pointer dereference in cs35l41_get_acpi_mute_state()
CVE-2025-40089cxl/features: Add check for no entries in cxl_feature_info
CVE-2025-40101btrfs: fix memory leaks when rejecting a non SINGLE data profile without an RST
CVE-2025-40100btrfs: do not assert we found block group item when creating free space tree
CVE-2025-40102KVM: arm64: Prevent access to vCPU events before init

IV. Related Vulnerabilities

V. Comments for CVE-2025-40103

No comments yet


Leave a comment