CVE-2025-71228Kernel vulnerability

6 documents5 sources
Severity
5.3MEDIUM
No vector
EPSS
No EPSS data
CISA KEV
Not in KEV
Exploit
No known exploits
Affected products
Timeline
PublishedFeb 18

Description

In the Linux kernel, the following vulnerability has been resolved: LoongArch: Set correct protection_map[] for VM_NONE/VM_SHARED For 32BIT platform _PAGE_PROTNONE is 0, so set a VMA to be VM_NONE or VM_SHARED will make pages non-present, then cause Oops with kernel page fault. Fix it by set correct protection_map[] for VM_NONE/VM_SHARED, replacing _PAGE_PROTNONE with _PAGE_PRESENT.

Affected Packages2 packages

Linuxlinux/linux_kernel6.2.06.6.124+3
Debianlinux/linux_kernel< 6.12.73-1+1

🔴Vulnerability Details

3
GHSA
GHSA-fjxh-qxr5-g7j4: In the Linux kernel, the following vulnerability has been resolved: LoongArch: Set correct protection_map[] for VM_NONE/VM_SHARED For 32BIT platform2026-02-18
OSV
LoongArch: Set correct protection_map[] for VM_NONE/VM_SHARED2026-02-18
OSV
CVE-2025-71228: In the Linux kernel, the following vulnerability has been resolved: LoongArch: Set correct protection_map[] for VM_NONE/VM_SHARED For 32BIT platform _2026-02-18

📋Vendor Advisories

2
Red Hat
kernel: LoongArch: Set correct protection_map[] for VM_NONE/VM_SHARED2026-02-18
Microsoft
LoongArch: Set correct protection_map[] for VM_NONE/VM_SHARED2026-02-10

🕵️Threat Intelligence

1
Wiz
CVE-2025-71228 Impact, Exploitability, and Mitigation Steps | Wiz
CVE-2025-71228 — Linux Kernel vulnerability | cvebase