In the Linux kernel, the following vulnerability has been resolved:
cifs: avoid NULL pointer dereference in dbg call
cifsserverdbg() implies server to be non-NULL so move call under condition to avoid NULL pointer dereference.
Found by Linux Verification Center (linuxtesting.org) with SVACE.
{
"cna_assigner": "Linux",
"osv_generated_from": "https://github.com/CVEProject/cvelistV5/tree/main/cves/2025/37xxx/CVE-2025-37844.json"
}[
{
"signature_type": "Function",
"deprecated": false,
"id": "CVE-2025-37844-19c399a3",
"target": {
"file": "fs/smb/client/smb2misc.c",
"function": "smb2_handle_cancelled_close"
},
"digest": {
"length": 927.0,
"function_hash": "316859648076962293251405159483325601477"
},
"signature_version": "v1",
"source": "https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git@20048e658652e731f5cadf4a695925e570ca0ff9"
},
{
"signature_type": "Line",
"deprecated": false,
"id": "CVE-2025-37844-215f3905",
"target": {
"file": "fs/smb/client/smb2misc.c"
},
"digest": {
"threshold": 0.9,
"line_hashes": [
"181183845214367800190345014340758035353",
"185946892436575253286732699787083432193",
"218994861661014171968965067692826434946",
"152772432676573954742776095928993874466",
"208219517771595182830929756698793634896",
"20953034975194108779221191481469958994",
"121298711660058539398421036678503457780"
]
},
"signature_version": "v1",
"source": "https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git@20048e658652e731f5cadf4a695925e570ca0ff9"
}
]
"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2025-37844.json"