cbcvebase.
CVE-2025-71182
published 2026-01-31

CVE-2025-71182: In the Linux kernel, the following vulnerability has been resolved: can: j1939: make j1939_session_activate() fail if device is no longer registered syzbot is…

PriorityP419medium5.5CVSS 3.1
AVLACLPRLUINSUCNINAH
EPSS
0.16%
5.3th percentile
In the Linux kernel, the following vulnerability has been resolved: can: j1939: make j1939_session_activate() fail if device is no longer registered syzbot is still reporting unregister_netdevice: waiting for vcan0 to become free. Usage count = 2 even after commit 93a27b5891b8 ("can: j1939: add missing calls in NETDEV_UNREGISTER notification handler") was added. A debug printk() patch found that j1939_session_activate() can succeed even after j1939_cancel_active_session() from j1939_netdev_notify(NETDEV_UNREGISTER) has completed. Since j1939_cancel_active_session() is processed with the session list lock held, checking ndev->reg_state in j1939_session_activate() with the session list lock held can reliably close the race window.

Affected

60 ranges· showing 25
VendorProductVersion rangeFixed in
debianlinux< linux 6.1.162-1 (bookworm)linux 6.1.162-1 (bookworm)
debianlinux-6.1< linux 6.1.162-1 (bookworm)linux 6.1.162-1 (bookworm)
linuxlinux
linuxlinux>= 9d71dd0c70099914fcd063135da3c580865e924c < ebb0dfd718dd31c8d3600612ca4b7207ec3d923aebb0dfd718dd31c8d3600612ca4b7207ec3d923a
linuxlinux>= 9d71dd0c70099914fcd063135da3c580865e924c < c3a4316e3c746af415c0fd6c6d489ad13f53714dc3a4316e3c746af415c0fd6c6d489ad13f53714d
linuxlinux>= 9d71dd0c70099914fcd063135da3c580865e924c < 46ca9dc978923c5e1247a9e9519240ba7ace413c46ca9dc978923c5e1247a9e9519240ba7ace413c
linuxlinux>= 9d71dd0c70099914fcd063135da3c580865e924c < 78d87b72cebe2a993fd5b017e9f14fb6278f2eae78d87b72cebe2a993fd5b017e9f14fb6278f2eae
linuxlinux>= 9d71dd0c70099914fcd063135da3c580865e924c < ba6f0d1832eeb5eb3a6dc5cb30e0f720b3cb3536ba6f0d1832eeb5eb3a6dc5cb30e0f720b3cb3536
linuxlinux>= 9d71dd0c70099914fcd063135da3c580865e924c < 79dd3f1d9dd310c2af89b09c71f34d93973b200f79dd3f1d9dd310c2af89b09c71f34d93973b200f
linuxlinux>= 9d71dd0c70099914fcd063135da3c580865e924c < 5d5602236f5db19e8b337a2cd87a90ace5ea776d5d5602236f5db19e8b337a2cd87a90ace5ea776d
linuxlinux_kernel
linuxlinux_kernel
linuxlinux_kernel>= 0 < 5.10.249-15.10.249-1
linuxlinux_kernel>= 0 < 6.1.162-16.1.162-1
linuxlinux_kernel>= 0 < 6.12.69-16.12.69-1
linuxlinux_kernel>= 0 < 6.18.8-16.18.8-1
linuxlinux_kernel>= 0 < 5.15.0-173.1835.15.0-173.183
linuxlinux_kernel>= 5.11 < 5.15.1985.15.198
linuxlinux_kernel>= 5.11.0 < 5.15.1985.15.198
linuxlinux_kernel>= 5.16 < 6.1.1616.1.161
linuxlinux_kernel>= 5.16.0 < 6.1.1616.1.161
linuxlinux_kernel>= 5.4.0 < 5.10.2485.10.248
linuxlinux_kernel>= 5.4.1 < 5.10.2485.10.248
linuxlinux_kernel>= 6.13 < 6.18.66.18.6
linuxlinux_kernel>= 6.13.0 < 6.18.66.18.6

CVSS provenance

nvdv3.15.5MEDIUMCVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
osv7.8HIGH
vendor_ubuntu7.8HIGH
vendor_debian5.5MEDIUM
vendor_redhat5.5MEDIUM
Stop checking back — get the weekly exploitation signal.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.