CVE-2025-68817 - CVE House
Back to Database
Status published Unknown CVE-2025-68817

ksmbd: fix use-after-free in ksmbd_tree_connect_put under concurrency

Vulnerability Description

In the Linux kernel, the following vulnerability has been resolved: ksmbd: fix use-after-free in ksmbd_tree_connect_put under concurrency Under high concurrency, A tree-connection object (tcon) is freed on a disconnect path while another path still holds a reference and later executes *_put()/write on it.

Impact Analysis

Refer to official advisory for detailed impact metrics.

Remediation

Ensure systems are updated to the latest vendor-supplied patch levels.

THREAT MONITOR

Am I Vulnerable?

Launch our assessment wizard to check if your infrastructure is exposed to • CVE-2025-68817

Credits & Attribution

No credits recorded in the NVD database.

Affected Vendor

Affected Software

Linux
Vulnerable Versions:
dd45db4d9bbc8f122a9b4db5ce94ae29fcf03d3c, 7b58ee8d0b91359554cf219cd4f33872ea2afd66, 33b235a6e6ebe0f05f3586a71e8d281d00f71e2e, 5.15.145, 6.1.71, 6.6, 0, 5.15.199, 6.1.160, 6.6.120, 6.12.64, 6.18.3, 6.19

Timeline

Official Publish: January 13th, 2026
Last Modified: May 23rd, 2026
Added to House: July 22nd, 2026

CVSS Vectors

No vector data available

Weaknesses (CWE)

No CWE data available

MITRE ATT&CK TTPs

No associated TTPs found for this vulnerability.