CVE-2025-71220

Source
https://cve.org/CVERecord?id=CVE-2025-71220
Import Source
https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2025-71220.json
JSON Data
https://api.osv.dev/v1/vulns/CVE-2025-71220
Downstream
Published
2026-02-14T16:27:03.946Z
Modified
2026-03-13T04:06:21.871829Z
Summary
smb/server: call ksmbd_session_rpc_close() on error path in create_smb2_pipe()
Details

In the Linux kernel, the following vulnerability has been resolved:

smb/server: call ksmbdsessionrpcclose() on error path in createsmb2_pipe()

When ksmbdiovpinrsp() fails, we should call ksmbdsessionrpcclose().

Database specific
{
    "cna_assigner": "Linux",
    "osv_generated_from": "https://github.com/CVEProject/cvelistV5/tree/main/cves/2025/71xxx/CVE-2025-71220.json"
}
References

Affected packages

Git / git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git

Affected ranges

Type
GIT
Repo
https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git
Events
Introduced
f2283680a80571ca82d710bc6ecd8f8beac67d63
Fixed
a2c68e256fb7a4ac34154c6e865a1389acca839f
Type
GIT
Repo
https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git
Events
Introduced
9f297df20d93411c0b4ddad7f88ba04a7cd36e77
Fixed
2b7b4df87fe6f2db6ee45f475de6b37b8b8e5d29
Type
GIT
Repo
https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git
Events
Introduced
e2b76ab8b5c9327ab2dae6da05d0752eb2f4771d
Fixed
04dd114b682a4ccaeba2c2bad049c8b50ce740d8
Fixed
ac18761b530b5dd40f59af8a25902282e5512854
Fixed
fdda836fcee6fdbcccc24e3679097efb583f581f
Fixed
7c28f8eef5ac5312794d8a52918076dcd787e53b

Database specific

source
"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2025-71220.json"

Linux / Kernel

Package

Name
Kernel

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
5.15.200
Type
ECOSYSTEM
Events
Introduced
5.16.0
Fixed
6.1.163
Type
ECOSYSTEM
Events
Introduced
6.2.0
Fixed
6.6.124
Type
ECOSYSTEM
Events
Introduced
6.6.0
Fixed
6.12.70
Type
ECOSYSTEM
Events
Introduced
6.7.0
Fixed
6.18.10

Database specific

source
"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2025-71220.json"