CVE-2025-22040 | Linux Kernel up to 6.1.133/6.6.86/6.12.22/6.13.10/6.14.1 ksmbd ksmbd_sessions_deregister reference count (Nessus ID 234884 / WID-SEC-2025-0844)
A vulnerability labeled as critical has been found in Linux Kernel up to 6.1.133/6.6.86/6.12.22/6.13.10/6.14.1. This affects the function ksmbd_sessions_deregister of the component ksmbd. Executing a manipulation can lead to improper update of reference count.
This vulnerability appears as CVE-2025-22040. The attacker needs to be present on the local network. There is no available exploit.
The affected component should be upgraded.