Security Advisory

CVE-2026-23228

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2026-02-18 14:53:31
Last updated 2026-06-02 13:01:03
Assigner Linux
CVSS score not scored
State PUBLISHED

Description

In the Linux kernel, the following vulnerability has been resolved: smb: server: fix leak of active_num_conn in ksmbd_tcp_new_connection() On kthread_run() failure in ksmbd_tcp_new_connection(), the transport is freed via free_transport(), which does not decrement active_num_conn, leaking this counter. Replace free_transport() with ksmbd_tcp_disconnect().