cbcvebase.
CVE-2025-71222
published 2026-02-14

CVE-2025-71222: In the Linux kernel, the following vulnerability has been resolved: wifi: wlcore: ensure skb headroom before skb_push This avoids occasional skb_under_panic…

PriorityP419medium5.5CVSS 3.1
AVLACLPRLUINSUCNINAH
EPSS
0.13%
2.9th percentile
In the Linux kernel, the following vulnerability has been resolved: wifi: wlcore: ensure skb headroom before skb_push This avoids occasional skb_under_panic Oops from wl1271_tx_work. In this case, headroom is less than needed (typically 110 - 94 = 16 bytes).

Affected

61 ranges· showing 25
VendorProductVersion rangeFixed in
debianlinux< linux 6.1.164-1 (bookworm)linux 6.1.164-1 (bookworm)
debianlinux-6.1< linux 6.1.164-1 (bookworm)linux 6.1.164-1 (bookworm)
linuxlinux
linuxlinux>= f5fc0f86b02afef1119b523623b4cde41475bc8c < 88295a55fefe5414e64293638b6f7549646e58ed88295a55fefe5414e64293638b6f7549646e58ed
linuxlinux>= f5fc0f86b02afef1119b523623b4cde41475bc8c < cd89a4656c03f8db0c57350aaec69cd3cfaa3522cd89a4656c03f8db0c57350aaec69cd3cfaa3522
linuxlinux>= f5fc0f86b02afef1119b523623b4cde41475bc8c < 745a0810dbc96a0471e5f5e627ba1e978c3116d4745a0810dbc96a0471e5f5e627ba1e978c3116d4
linuxlinux>= f5fc0f86b02afef1119b523623b4cde41475bc8c < b167312390fdd461c81ead516f2b0b44e83a9edbb167312390fdd461c81ead516f2b0b44e83a9edb
linuxlinux>= f5fc0f86b02afef1119b523623b4cde41475bc8c < 71de0b6e04bbee5575caf9a1e4d424e7dcc5001871de0b6e04bbee5575caf9a1e4d424e7dcc50018
linuxlinux>= f5fc0f86b02afef1119b523623b4cde41475bc8c < 689a7980e4788e13e766763d53569fb78dea2513689a7980e4788e13e766763d53569fb78dea2513
linuxlinux>= f5fc0f86b02afef1119b523623b4cde41475bc8c < e75665dd096819b1184087ba5718bd93beafff51e75665dd096819b1184087ba5718bd93beafff51
linuxlinux_kernel
linuxlinux_kernel>= 0 < 5.10.251-15.10.251-1
linuxlinux_kernel>= 0 < 6.1.164-16.1.164-1
linuxlinux_kernel>= 0 < 6.12.73-16.12.73-1
linuxlinux_kernel>= 0 < 6.18.10-16.18.10-1
linuxlinux_kernel>= 2.6.32 < 5.10.2505.10.250
linuxlinux_kernel>= 5.11 < 5.15.2005.15.200
linuxlinux_kernel>= 5.16 < 6.1.1636.1.163
linuxlinux_kernel>= 6.13 < 6.18.106.18.10
linuxlinux_kernel>= 6.2 < 6.6.1246.6.124
linuxlinux_kernel>= 6.7 < 6.12.706.12.70
ubuntulinux
ubuntulinux-aws
ubuntulinux-aws-5.15
ubuntulinux-aws-fips

CVSS provenance

nvdv3.15.5MEDIUMCVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
osv5.5MEDIUM
vendor_ubuntu7.8HIGH
vendor_debian5.5MEDIUM
vendor_redhat5.5MEDIUM
Stop checking back — get the weekly exploitation signal.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.