cbcvebase.
CVE-2025-71083
published 2026-01-13

CVE-2025-71083: In the Linux kernel, the following vulnerability has been resolved: drm/ttm: Avoid NULL pointer deref for evicted BOs It is possible for a BO to exist that is…

PriorityP419medium5.5CVSS 3.1
AVLACLPRLUINSUCNINAH
EPSS
0.11%
1.7th percentile
In the Linux kernel, the following vulnerability has been resolved: drm/ttm: Avoid NULL pointer deref for evicted BOs It is possible for a BO to exist that is not currently associated with a resource, e.g. because it has been evicted. When devcoredump tries to read the contents of all BOs for dumping, we need to expect this as well -- in this case, ENODATA is recorded instead of the buffer contents.

Affected

55 ranges· showing 25
VendorProductVersion rangeFixed in
debianlinux< linux 6.1.162-1 (bookworm)linux 6.1.162-1 (bookworm)
debianlinux-6.1< linux 6.1.162-1 (bookworm)linux 6.1.162-1 (bookworm)
linuxlinux
linuxlinux>= 09ac4fcb3f255e9225967c75f5893325c116cdbe < 47a85604a761005d255ae38115ee630cc693175647a85604a761005d255ae38115ee630cc6931756
linuxlinux>= 09ac4fcb3f255e9225967c75f5893325c116cdbe < 4b9944493c6d92d7b29cfd83aaf3deb842b8da794b9944493c6d92d7b29cfd83aaf3deb842b8da79
linuxlinux>= 09ac4fcb3f255e9225967c75f5893325c116cdbe < 3d004f7341d4898889801ebb2ef61ffca610dd6f3d004f7341d4898889801ebb2ef61ffca610dd6f
linuxlinux>= 09ac4fcb3f255e9225967c75f5893325c116cdbe < 5a81095d3e1b521ac7cfe3b14d5f149bace3d6e05a81095d3e1b521ac7cfe3b14d5f149bace3d6e0
linuxlinux>= 09ac4fcb3f255e9225967c75f5893325c116cdbe < b94182b3d7228aec18d069cba56d5982e9bfe1b1b94182b3d7228aec18d069cba56d5982e9bfe1b1
linuxlinux>= 09ac4fcb3f255e9225967c75f5893325c116cdbe < 491adc6a0f9903c32b05f284df1148de39e8e644491adc6a0f9903c32b05f284df1148de39e8e644
linuxlinux_kernel
linuxlinux_kernel
linuxlinux_kernel>= 0 < 6.1.162-16.1.162-1
linuxlinux_kernel>= 0 < 6.12.69-16.12.69-1
linuxlinux_kernel>= 0 < 6.18.5-16.18.5-1
linuxlinux_kernel>= 0 < 5.15.0-173.1835.15.0-173.183
linuxlinux_kernel>= 4.14.0 < 5.15.1985.15.198
linuxlinux_kernel>= 4.14.1 < 5.15.1985.15.198
linuxlinux_kernel>= 5.16 < 6.1.1606.1.160
linuxlinux_kernel>= 5.16.0 < 6.1.1606.1.160
linuxlinux_kernel>= 6.13 < 6.18.46.18.4
linuxlinux_kernel>= 6.13.0 < 6.18.46.18.4
linuxlinux_kernel>= 6.2 < 6.6.1206.6.120
linuxlinux_kernel>= 6.2.0 < 6.6.1206.6.120
linuxlinux_kernel>= 6.7 < 6.12.646.12.64
linuxlinux_kernel>= 6.7.0 < 6.12.646.12.64

CVSS provenance

nvdv3.15.5MEDIUMCVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
osv7.8HIGH
vendor_ubuntu7.8HIGH
vendor_debian5.5MEDIUM
vendor_redhat5.5MEDIUM
Stop checking back — get the weekly exploitation signal.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.