cbcvebase.
CVE-2025-71084
published 2026-01-13

CVE-2025-71084: In the Linux kernel, the following vulnerability has been resolved: RDMA/cm: Fix leaking the multicast GID table reference If the CM ID is destroyed while the…

PriorityP419medium5.5CVSS 3.1
AVLACLPRLUINSUCNINAH
EPSS
0.11%
1.7th percentile
In the Linux kernel, the following vulnerability has been resolved: RDMA/cm: Fix leaking the multicast GID table reference If the CM ID is destroyed while the CM event for multicast creating is still queued the cancel_work_sync() will prevent the work from running which also prevents destroying the ah_attr. This leaks a refcount and triggers a WARN: GID entry ref leak for dev syz1 index 2 ref=573 WARNING: CPU: 1 PID: 655 at drivers/infiniband/core/cache.c:809 release_gid_table drivers/infiniband/core/cache.c:806 [inline] WARNING: CPU: 1 PID: 655 at drivers/infiniband/core/cache.c:809 gid_table_release_one+0x284/0x3cc drivers/infiniband/core/cache.c:886 Destroy the ah_attr after canceling the work, it is safe to call this twice.

Affected

63 ranges· showing 25
VendorProductVersion rangeFixed in
debianlinux< linux 6.1.162-1 (bookworm)linux 6.1.162-1 (bookworm)
debianlinux-6.1< linux 6.1.162-1 (bookworm)linux 6.1.162-1 (bookworm)
linuxlinux
linuxlinux
linuxlinux>= 5.10.20 < 5.10.2485.10.248
linuxlinux>= 5.11.3 < 5.125.12
linuxlinux>= 60d613b39e8d0c9f3b526e9c96445422b4562d76 < d5ce588a9552878859a4d44b70b724216c188a5fd5ce588a9552878859a4d44b70b724216c188a5f
linuxlinux>= fe454dc31e84f8c14cb8942fcb61666c9f40745b < abf38398724ecc888f62c678d288da40d11878afabf38398724ecc888f62c678d288da40d11878af
linuxlinux>= fe454dc31e84f8c14cb8942fcb61666c9f40745b < ab668a58c4a2ccb6d54add7a76f2f955d15d0196ab668a58c4a2ccb6d54add7a76f2f955d15d0196
linuxlinux>= fe454dc31e84f8c14cb8942fcb61666c9f40745b < c0acdee513239e1d6e1b490f56be0e6837dfd162c0acdee513239e1d6e1b490f56be0e6837dfd162
linuxlinux>= fe454dc31e84f8c14cb8942fcb61666c9f40745b < 5cb34bb5fd726491b809efbeb5cfd63ae5bf9cf35cb34bb5fd726491b809efbeb5cfd63ae5bf9cf3
linuxlinux>= fe454dc31e84f8c14cb8942fcb61666c9f40745b < 3ba6d01c4b3c584264dc733c6a2ecc5bbc8e0bb53ba6d01c4b3c584264dc733c6a2ecc5bbc8e0bb5
linuxlinux>= fe454dc31e84f8c14cb8942fcb61666c9f40745b < 57f3cb6c84159d12ba343574df2115fb18dd83ca57f3cb6c84159d12ba343574df2115fb18dd83ca
linuxlinux_kernel
linuxlinux_kernel
linuxlinux_kernel>= 0 < 5.10.249-15.10.249-1
linuxlinux_kernel>= 0 < 6.1.162-16.1.162-1
linuxlinux_kernel>= 0 < 6.12.69-16.12.69-1
linuxlinux_kernel>= 0 < 6.18.5-16.18.5-1
linuxlinux_kernel>= 0 < 5.10.2485.10.248
linuxlinux_kernel>= 0 < 5.15.0-173.1835.15.0-173.183
linuxlinux_kernel>= 5.10.20 < 5.10.2485.10.248
linuxlinux_kernel>= 5.11.0 < 5.15.1985.15.198
linuxlinux_kernel>= 5.11.3 < 5.125.12
linuxlinux_kernel>= 5.12.0 < 6.1.1606.1.160

CVSS provenance

nvdv3.15.5MEDIUMCVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
osv7.8HIGH
vendor_ubuntu7.8HIGH
vendor_debian5.5MEDIUM
vendor_redhat5.5MEDIUM
Stop checking back — get the weekly exploitation signal.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.