CVE-2025-38325: Linux Kernel

Medium severity, CVSS 5.5. EPSS: 0.4% chance of exploitation in the next 30 days.

In the Linux kernel, the following vulnerability has been resolved: ksmbd: add free_transport ops in ksmbd connection free_transport function for tcp connection can be called from smbdirect. It will cause kernel oops. This patch add free_transport ops in ksmbd connection, and add each free_transports for tcp and smbdirect.

Affected products

  • Linux Linux Kernel: from 6.12.26, before 6.12.35 (fixed in 6.12.35); from 6.14.4, before 6.15 (fixed in 6.15); from 6.15.1, before 6.15.4 (fixed in 6.15.4); version 6.15 only; version 6.16 only

Published 2025-07-10. Last modified 2026-07-30.