CVE-2025-71155Out-of-bounds Write in Linux

Severity
7.8HIGHNVD
EPSS
0.0%
top 93.96%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedJan 23

Description

In the Linux kernel, the following vulnerability has been resolved: KVM: s390: Fix gmap_helper_zap_one_page() again A few checks were missing in gmap_helper_zap_one_page(), which can lead to memory corruption in the guest under specific circumstances. Add the missing checks.

CVSS vector

CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:HExploitability: 1.8 | Impact: 5.9

Affected Packages4 packages

NVDlinux/linux_kernel6.17.46.18+1
Debianlinux/linux_kernel< 6.18.5-1
CVEListV5linux/linux5deafa27d9ae040b75d392f60b12e300b42b47922af2abbcbf8573100288e8f8aea2dab8a2a0ceb7+3
debiandebian/linux< linux 6.18.5-1 (forky)

Patches

🔴Vulnerability Details

2
OSV
CVE-2025-71155: In the Linux kernel, the following vulnerability has been resolved: KVM: s390: Fix gmap_helper_zap_one_page() again A few checks were missing in gmap_2026-01-23
GHSA
GHSA-73rm-3q3v-37g4: In the Linux kernel, the following vulnerability has been resolved: KVM: s390: Fix gmap_helper_zap_one_page() again A few checks were missing in gma2026-01-23

📋Vendor Advisories

2
Red Hat
kernel: KVM: s390: Fix gmap_helper_zap_one_page() again2026-01-23
Debian
CVE-2025-71155: linux - In the Linux kernel, the following vulnerability has been resolved: KVM: s390: ...2025

🕵️Threat Intelligence

1
Wiz
CVE-2025-71155 Impact, Exploitability, and Mitigation Steps | Wiz