cbcvebase.
CVE-2025-71190
published 2026-01-31

CVE-2025-71190: In the Linux kernel, the following vulnerability has been resolved: dmaengine: bcm-sba-raid: fix device leak on probe Make sure to drop the reference taken…

PriorityP419medium5.5CVSS 3.1
AVLACLPRLUINSUCNINAH
EPSS
0.19%
8.5th percentile
In the Linux kernel, the following vulnerability has been resolved: dmaengine: bcm-sba-raid: fix device leak on probe Make sure to drop the reference taken when looking up the mailbox device during probe on probe failures and on driver unbind.

Affected

76 ranges· showing 25
VendorProductVersion rangeFixed in
debianlinux< linux 6.1.162-1 (bookworm)linux 6.1.162-1 (bookworm)
debianlinux-6.1< linux 6.1.162-1 (bookworm)linux 6.1.162-1 (bookworm)
linuxlinux
linuxlinux>= 743e1c8ffe4ee5dd7596556dcc3f022ccde13d7b < 4316e4c4fd2c09f68a262365f21847cafa8fe9dd4316e4c4fd2c09f68a262365f21847cafa8fe9dd
linuxlinux>= 743e1c8ffe4ee5dd7596556dcc3f022ccde13d7b < 4730f12a192d7314119b3d8331611ab151b87bdf4730f12a192d7314119b3d8331611ab151b87bdf
linuxlinux>= 743e1c8ffe4ee5dd7596556dcc3f022ccde13d7b < bc98e68adfef3b25c06ff08f0808bb59f787420cbc98e68adfef3b25c06ff08f0808bb59f787420c
linuxlinux>= 743e1c8ffe4ee5dd7596556dcc3f022ccde13d7b < c80ca7bdff158401440741bdcf9175bd8608580bc80ca7bdff158401440741bdcf9175bd8608580b
linuxlinux>= 743e1c8ffe4ee5dd7596556dcc3f022ccde13d7b < db6f1d6d31711e73e6a214c73e6a8fb4cda0483ddb6f1d6d31711e73e6a214c73e6a8fb4cda0483d
linuxlinux>= 743e1c8ffe4ee5dd7596556dcc3f022ccde13d7b < 2ed1a9de1f2d727ccae5bc9cc7c63ee3519c0c8b2ed1a9de1f2d727ccae5bc9cc7c63ee3519c0c8b
linuxlinux>= 743e1c8ffe4ee5dd7596556dcc3f022ccde13d7b < 7c3a46ebf15a9796b763a54272407fdbf945bed87c3a46ebf15a9796b763a54272407fdbf945bed8
linuxlinux_kernel
linuxlinux_kernel
linuxlinux_kernel
linuxlinux_kernel
linuxlinux_kernel
linuxlinux_kernel
linuxlinux_kernel
linuxlinux_kernel
linuxlinux_kernel
linuxlinux_kernel>= 0 < 5.10.249-15.10.249-1
linuxlinux_kernel>= 0 < 6.1.162-16.1.162-1
linuxlinux_kernel>= 0 < 6.12.69-16.12.69-1
linuxlinux_kernel>= 0 < 6.18.8-16.18.8-1
linuxlinux_kernel>= 4.13.0 < 5.10.2495.10.249
linuxlinux_kernel>= 4.13.1 < 5.10.2495.10.249

CVSS provenance

nvdv3.15.5MEDIUMCVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
osv5.5MEDIUM
vendor_ubuntu7.8HIGH
vendor_debian5.5MEDIUM
vendor_redhat5.5MEDIUM
Stop checking back — get the weekly exploitation signal.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.