cbcvebase.
CVE-2025-71163
published 2026-01-25

CVE-2025-71163: In the Linux kernel, the following vulnerability has been resolved: dmaengine: idxd: fix device leaks on compat bind and unbind Make sure to drop the reference…

PriorityP420medium5.5CVSS 3.1
AVLACLPRLUINSUCNINAH
EPSS
0.19%
9.2th percentile
In the Linux kernel, the following vulnerability has been resolved: dmaengine: idxd: fix device leaks on compat bind and unbind Make sure to drop the reference taken when looking up the idxd device as part of the compat bind and unbind sysfs interface.

Affected

63 ranges· showing 25
VendorProductVersion rangeFixed in
debianlinux< linux 6.1.162-1 (bookworm)linux 6.1.162-1 (bookworm)
debianlinux-6.1< linux 6.1.162-1 (bookworm)linux 6.1.162-1 (bookworm)
linuxlinux
linuxlinux>= 6e7f3ee97bbe2c7d7a53b7dbd7a08a579e03c8c9 < b7bd948f89271c92d9ca9b2b682bfba56896e959b7bd948f89271c92d9ca9b2b682bfba56896e959
linuxlinux>= 6e7f3ee97bbe2c7d7a53b7dbd7a08a579e03c8c9 < b2d077180a56e3b7c97b7517d0465b584adc693bb2d077180a56e3b7c97b7517d0465b584adc693b
linuxlinux>= 6e7f3ee97bbe2c7d7a53b7dbd7a08a579e03c8c9 < c81ea0222eaaafdd77348e27d1e84a1b8cfc0c99c81ea0222eaaafdd77348e27d1e84a1b8cfc0c99
linuxlinux>= 6e7f3ee97bbe2c7d7a53b7dbd7a08a579e03c8c9 < 0c97ff108f825a70c3bb29d65ddf0a013d231bb90c97ff108f825a70c3bb29d65ddf0a013d231bb9
linuxlinux>= 6e7f3ee97bbe2c7d7a53b7dbd7a08a579e03c8c9 < a7226fd61def74b60dd8e47ec84cabafc39d575ba7226fd61def74b60dd8e47ec84cabafc39d575b
linuxlinux>= 6e7f3ee97bbe2c7d7a53b7dbd7a08a579e03c8c9 < 799900f01792cf8b525a44764f065f83fcafd468799900f01792cf8b525a44764f065f83fcafd468
linuxlinux_kernel
linuxlinux_kernel
linuxlinux_kernel
linuxlinux_kernel
linuxlinux_kernel
linuxlinux_kernel>= 0 < 6.1.162-16.1.162-1
linuxlinux_kernel>= 0 < 6.12.69-16.12.69-1
linuxlinux_kernel>= 0 < 6.18.8-16.18.8-1
linuxlinux_kernel>= 5.15 < 5.15.1995.15.199
linuxlinux_kernel>= 5.16 < 6.1.1626.1.162
linuxlinux_kernel>= 6.13 < 6.18.76.18.7
linuxlinux_kernel>= 6.2 < 6.6.1226.6.122
linuxlinux_kernel>= 6.7 < 6.12.676.12.67
ubuntulinux
ubuntulinux-aws
ubuntulinux-aws-fips

CVSS provenance

nvdv3.15.5MEDIUMCVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
osv5.5MEDIUM
vendor_ubuntu7.8HIGH
vendor_debian5.5MEDIUM
vendor_redhat5.5MEDIUM
Stop checking back — get the weekly exploitation signal.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.