IM
IronMonkey Threat Research

CVE-2025-71163 MEDIUM

Published: 2026-01-25 | Last Modified: 2026-07-14 | Status: Modified

Description

In the Linux kernel, the following vulnerability has been resolved: dmaengine: idxd: fix device leaks on compat bind and unbind Make sure to drop the reference taken when looking up the idxd device as part of the compat bind and unbind sysfs interface.

Additional Descriptions (1)

En el kernel de Linux, la siguiente vulnerabilidad ha sido resuelta: dmaengine: idxd: corregir fugas de dispositivos en la vinculación y desvinculación de compatibilidad Asegúrese de liberar la referencia tomada al buscar el dispositivo idxd como parte de la interfaz sysfs de vinculación y desvinculación de compatibilidad.

CVSS Metrics

Base Score: 5.5 (MEDIUM)

CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H

Attack VectorLOCAL
Attack ComplexityLOW
Privileges RequiredLOW
User InteractionNONE
ScopeUNCHANGED
Confidentiality ImpactNONE
Integrity ImpactNONE
Availability ImpactHIGH

Source: [email protected]

Type: Primary

Exploitability Score: 1.8

Impact Score: 3.6

Weaknesses

Source Type Description
[email protected] Primary
en CWE-401

Affected Products

Vendor Product Version Update Type
linux linux_kernel * <built-in method update of dict object at 0x7d24245377c0> Operating System
linux linux_kernel * <built-in method update of dict object at 0x7d23beb16000> Operating System
linux linux_kernel * <built-in method update of dict object at 0x7d2424537500> Operating System
linux linux_kernel * <built-in method update of dict object at 0x7d242455cac0> Operating System
linux linux_kernel * <built-in method update of dict object at 0x7d2424536a80> Operating System
linux linux_kernel 6.19 <built-in method update of dict object at 0x7d23bea89e00> Operating System
linux linux_kernel 6.19 <built-in method update of dict object at 0x7d2424534600> Operating System
linux linux_kernel 6.19 <built-in method update of dict object at 0x7d2424537600> Operating System
linux linux_kernel 6.19 <built-in method update of dict object at 0x7d242455fc80> Operating System
linux linux_kernel 6.19 <built-in method update of dict object at 0x7d24245358c0> Operating System

Affected Configurations

Operator: OR

Vulnerable CPE
Yes cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*
Yes cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*
Yes cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*
Yes cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*
Yes cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*
Yes cpe:2.3:o:linux:linux_kernel:6.19:rc1:*:*:*:*:*:*
Yes cpe:2.3:o:linux:linux_kernel:6.19:rc2:*:*:*:*:*:*
Yes cpe:2.3:o:linux:linux_kernel:6.19:rc3:*:*:*:*:*:*
Yes cpe:2.3:o:linux:linux_kernel:6.19:rc4:*:*:*:*:*:*
Yes cpe:2.3:o:linux:linux_kernel:6.19:rc5:*:*:*:*:*:*

References

Notification
Message here