Refcount Leak Vulnerability in Linux Kernel's ksmbd Service
CVE-2025-39720

Currently unrated

Key Information:

Vendor

Linux

Status
Vendor
CVE Published:
5 September 2025

What is CVE-2025-39720?

A refcount leak has been detected in the ksmbd service of the Linux kernel, which prevents proper resource deallocation. When the ksmbd_conn_releasing function indicates a connection is being released, the reference count is not decremented as intended. This leads to a situation where the reference count does not reach zero, resulting in memory resources remaining allocated and potentially causing resource exhaustion over time. It is crucial for users and administrators to address this vulnerability to secure their systems against unintended behavior and performance degradation.

Human OS v1.0:
Ageing Is an Unpatched Zero-Day Vulnerability.

Remediate biological technical debt. Prime Ageing uses 95% high-purity SIRT6 activation to maintain genomic integrity and bolster systemic resilience.

Affected Version(s)

Linux 0626e6641f6b467447c81dd7678a69c66f7746cf

Linux 0626e6641f6b467447c81dd7678a69c66f7746cf < 36e010bb865fbaa1202fe9bcce3fd486d6db7606

Linux 0626e6641f6b467447c81dd7678a69c66f7746cf < 9a7abce6e8c0e2145b346a6d4abf0d9655e9b0e8

References

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.