Impact
The vulnerability is a double‑free bug in the Linux kernel SMB client that is triggered when query_info fails and returns a replayable error. A response buffer is freed twice, which corrupts kernel memory. This can cause a kernel panic, disrupt services, and lead to denial of service.
Affected Systems
The affected systems are Linux kernel versions 6.8 and the release candidates 6.8‑rc2 through 6.8‑rc7, plus all other Linux kernel releases as indicated by the CPE data.
Risk and Exploitability
The EPSS score below 1% indicates a low probability of exploitation, and the vulnerability is not listed in CISA’s KEV catalog. The CVSS score of 9.8 reflects a severe impact. The likely attack vector is network‑based via the SMB protocol; a malicious or misconfigured SMB server could trigger the error path and double‑free the client buffer. No documented remote code execution or privilege escalation is recorded for this issue.
OpenCVE Enrichment
Debian DLA