PT-2025-40626 · Linux+4 · Linux Kernel+4

Published

2025-09-18

·

Updated

2026-05-07

·

CVE-2025-39929

CVSS v3.1

5.5

Medium

VectorAV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
Name of the Vulnerable Software and Affected Versions Linux kernel (affected versions not specified)
Description A memory leak exists in the SMB client within the Linux kernel, specifically within the smbd negotiate() function's error handling path. The leak occurs due to objects remaining on kmem cache shutdown(). This issue was identified during testing of an unrelated patch.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Exploit

Memory Leak

Weakness Enumeration

Related Identifiers

AZL-68132
AZL-75321
BDU:2026-02677
CVE-2025-39929
DLA-4379-1
DSA-6053-1
ECHO-B1C4-D094-9AA4
MGASA-2025-0309
MGASA-2025-0310
OESA-2026-1303
OESA-2026-1304
OESA-2026-1305
SUSE-SU-2025:4189-1
USN-8095-1
USN-8095-2
USN-8095-3
USN-8095-4
USN-8095-5
USN-8100-1
USN-8125-1
USN-8126-1
USN-8165-1
USN-8261-1

Affected Products

Debian
Linuxmint
Linux Kernel
Suse
Ubuntu