cbcvebase.
CVE-2025-71114
published 2026-01-14

CVE-2025-71114: In the Linux kernel, the following vulnerability has been resolved: via_wdt: fix critical boot hang due to unnamed resource allocation The VIA watchdog driver…

PriorityP420medium5.5CVSS 3.1
AVLACLPRLUINSUCNINAH
EPSS
0.12%
2.5th percentile
In the Linux kernel, the following vulnerability has been resolved: via_wdt: fix critical boot hang due to unnamed resource allocation The VIA watchdog driver uses allocate_resource() to reserve a MMIO region for the watchdog control register. However, the allocated resource was not given a name, which causes the kernel resource tree to contain an entry marked as "" under /proc/iomem on x86 platforms. During boot, this unnamed resource can lead to a critical hang because subsequent resource lookups and conflict checks fail to handle the invalid entry properly.

Affected

66 ranges· showing 25
VendorProductVersion rangeFixed in
debianlinux< linux 6.1.162-1 (bookworm)linux 6.1.162-1 (bookworm)
debianlinux-6.1< linux 6.1.162-1 (bookworm)linux 6.1.162-1 (bookworm)
linuxlinux
linuxlinux>= dc3c56b703dad4aec8a9b3dd86f03a90d0c26a2d < 1d56025a3af50db0f3da2792f41eb9943eee53241d56025a3af50db0f3da2792f41eb9943eee5324
linuxlinux>= dc3c56b703dad4aec8a9b3dd86f03a90d0c26a2d < c7b986adc9e9336066350542ac5a2005d305ae78c7b986adc9e9336066350542ac5a2005d305ae78
linuxlinux>= dc3c56b703dad4aec8a9b3dd86f03a90d0c26a2d < 47c910965c936724070d2a8094a4c3ed8f45285647c910965c936724070d2a8094a4c3ed8f452856
linuxlinux>= dc3c56b703dad4aec8a9b3dd86f03a90d0c26a2d < d2c7c90aca7b37f60f16b2bedcfeb16204f2f35dd2c7c90aca7b37f60f16b2bedcfeb16204f2f35d
linuxlinux>= dc3c56b703dad4aec8a9b3dd86f03a90d0c26a2d < f7b6370d0fbee06a867037d675797a606cb62e57f7b6370d0fbee06a867037d675797a606cb62e57
linuxlinux>= dc3c56b703dad4aec8a9b3dd86f03a90d0c26a2d < c6a2dd4f2e4e6cbdfe7a1618160281af897b75dbc6a2dd4f2e4e6cbdfe7a1618160281af897b75db
linuxlinux>= dc3c56b703dad4aec8a9b3dd86f03a90d0c26a2d < 7aa31ee9ec92915926e74731378c009c9cc049287aa31ee9ec92915926e74731378c009c9cc04928
linuxlinux_kernel
linuxlinux_kernel
linuxlinux_kernel
linuxlinux_kernel
linuxlinux_kernel
linuxlinux_kernel
linuxlinux_kernel
linuxlinux_kernel
linuxlinux_kernel
linuxlinux_kernel>= 0 < 5.10.249-15.10.249-1
linuxlinux_kernel>= 0 < 6.1.162-16.1.162-1
linuxlinux_kernel>= 0 < 6.12.69-16.12.69-1
linuxlinux_kernel>= 0 < 6.18.3-16.18.3-1
linuxlinux_kernel>= 0 < 5.15.0-173.1835.15.0-173.183
linuxlinux_kernel>= 3.3.0 < 5.10.2485.10.248

CVSS provenance

nvdv3.15.5MEDIUMCVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
osv7.8HIGH
vendor_ubuntu7.8HIGH
vendor_debian5.5MEDIUM
vendor_redhat5.5MEDIUM
Stop checking back — get the weekly exploitation signal.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.