CVE-2025-22042: ksmbd: add bounds check for create lease context
Published Apr 16, 2025
·Updated
In the Linux kernel, the following vulnerability has been resolved:
ksmbd: add bounds check for create lease context
Add missing bounds check for create lease context.
Affected Software
9 affected componentsFixes available
Linux Kernel
Linux Linux kernel>=5.15<6.1.134
Linux Linux kernel>=6.2<6.6.87
Linux Linux kernel>=6.7<6.12.23
Linux Linux kernel>=6.13<6.13.11
Linux Linux kernel>=6.14<6.14.2
Debian Debian Linux=11.0
Microsoft azl3 kernel 6.6.92.2-1
Microsoft azl3 kernel 6.6.85.1-4
Event History
Apr 16, 2025
CVE Published
via MITRE·02:12 PM
Data Sourced
via MITRE·02:12 PM
DescriptionSeverity
Data Sourced
via NVD·03:15 PM
RemedyDescriptionSeverityAffected Software
Jul 11, 2025
Data Sourced
via Microsoft·07:00 AM
DescriptionSeverityWeakness
Data Sourced
via Microsoft·07:00 AM
Affected Software
Updated
via Microsoft·07:00 AM
SeverityAffected Software
Updated
via Microsoft·07:00 AM
DescriptionSeverity
Nov 1, 58546
Event
via MITRE·07:33 AM
Frequently Asked Questions
1
What is the severity of CVE-2025-22042?
The severity of CVE-2025-22042 is classified as high due to the potential impact on the system's stability and security.
2
How do I fix CVE-2025-22042?
To fix CVE-2025-22042, update your Linux kernel to the latest version where the vulnerability has been patched.
3
What potential risks does CVE-2025-22042 pose to my system?
CVE-2025-22042 could lead to denial of service by allowing unauthorized access or system crashes.
4
Which versions of the Linux kernel are affected by CVE-2025-22042?
CVE-2025-22042 impacts specific versions of the Linux kernel prior to the patch release.
5
Is CVE-2025-22042 being actively exploited in the wild?
As of now, there is no public indication that CVE-2025-22042 is being actively exploited.