{"id":"CVE-2026-98172","summary":"smb: client: fix smbd_connection leak on cifs_get_tcp_session() error","details":"In the Linux kernel, the following vulnerability has been resolved:\n\nsmb: client: fix smbd_connection leak on cifs_get_tcp_session() error\n\nWhen an RDMA connection is successfully established via\nsmbd_get_connection() but cifs_get_tcp_session() later fails (e.g.\nkthread_create() returns an error), the error path frees tcp_ses\nwithout first destroying the smbd_connection.\n\nFix this by calling smbd_destroy() in the out_err cleanup path before\nkfree(tcp_ses).  smbd_destroy() safely handles the case where\nsmbd_conn is NULL, so it can be called unconditionally.","modified":"2026-10-08T02:52:52.876518879Z","published":"2026-10-06T08:44:16.721Z","database_specific":{"osv_generated_from":"https://github.com/CVEProject/cvelistV5/tree/main/cves/2026/98xxx/CVE-2026-98172.json","cna_assigner":"Linux"},"references":[{"type":"WEB","url":"https://git.kernel.org/stable/c/3164402c58940ff58a3cecdb026405f07b0253af"},{"type":"WEB","url":"https://git.kernel.org/stable/c/5c908e49d349266dff0c86dda6a05df0ff19b824"},{"type":"WEB","url":"https://git.kernel.org/stable/c/928edc4bd6a617caabeb575fc13c254d9df623c4"},{"type":"WEB","url":"https://git.kernel.org/stable/c/b26a3fcf2f1c2cadba400290b639f01395db8fc8"},{"type":"WEB","url":"https://git.kernel.org/stable/c/e3344bb0ff5ec8a276f42239e140f5442841ef23"},{"type":"WEB","url":"https://git.kernel.org/stable/c/e75c96157d45e498970158c8f7373d90102e33b9"},{"type":"ADVISORY","url":"https://github.com/CVEProject/cvelistV5/tree/main/cves/2026/98xxx/CVE-2026-98172.json"},{"type":"ADVISORY","url":"https://nvd.nist.gov/vuln/detail/CVE-2026-98172"},{"type":"PACKAGE","url":"https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git"}],"affected":[{"ranges":[{"type":"GIT","repo":"https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git","events":[{"introduced":"2f8946464b11822169b9f10c7cf58a2440b51d54"},{"fixed":"3164402c58940ff58a3cecdb026405f07b0253af"},{"fixed":"e3344bb0ff5ec8a276f42239e140f5442841ef23"},{"fixed":"5c908e49d349266dff0c86dda6a05df0ff19b824"},{"fixed":"928edc4bd6a617caabeb575fc13c254d9df623c4"},{"fixed":"b26a3fcf2f1c2cadba400290b639f01395db8fc8"},{"fixed":"e75c96157d45e498970158c8f7373d90102e33b9"}]}],"database_specific":{"source":"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2026-98172.json"}},{"package":{"name":"Kernel","ecosystem":"Linux"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"4.16.0"},{"fixed":"6.1.189"}]},{"type":"ECOSYSTEM","events":[{"introduced":"6.2.0"},{"fixed":"6.6.158"}]},{"type":"ECOSYSTEM","events":[{"introduced":"6.7.0"},{"fixed":"6.12.112"}]},{"type":"ECOSYSTEM","events":[{"introduced":"6.13.0"},{"fixed":"6.18.54"}]},{"type":"ECOSYSTEM","events":[{"introduced":"6.19.0"},{"fixed":"7.2.8"}]}],"database_specific":{"source":"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2026-98172.json"}}],"schema_version":"1.9.0"}