CVE-2025-71288
In the Linux kernel, the following vulnerability has been resolved: memory: mtk-smi: fix device leaks on common probe Make sure to drop the reference taken when looking up the SMI device during common probe on late probe failure (e.g. probe deferral)…
Does this matter?
Lower severity and a low EPSS score (0.13%). Track it; it rarely justifies an emergency change on its own.
Description
In the Linux kernel, the following vulnerability has been resolved: memory: mtk-smi: fix device leaks on common probe Make sure to drop the reference taken when looking up the SMI device during common probe on late probe failure (e.g. probe deferral) and on driver unbind.
- CVSS 3.1
- 5.5 MEDIUMCVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
- EPSS
- 0.13% probability · 3th percentile
- CISA KEV
- Not listed
- Weakness
- CWE-401
- Affected
- linux/linux kernel
- Source
- 416baaa9-dc9f-4396-8d5f-8c081fb06d67
References
- https://git.kernel.org/stable/c/6cfa038bddd710f544076ea2ef7792fc82fbedd6Patch
- https://git.kernel.org/stable/c/9704564a70399c2787f5a7c5d347add721056e9dPatch
- https://git.kernel.org/stable/c/984992f31cfb71b25cd0a72ef51ceb5dd6f187e8Patch
- https://git.kernel.org/stable/c/b16599fedf49fd42d174fba342a0b56103df3169Patch
- https://git.kernel.org/stable/c/b44d090d6ca159d94b59ad4cc44ffdaca094df82Patch
- https://git.kernel.org/stable/c/b8b2cf42b94c0a8efe43279643935256a6f58b9fPatch
Source: NVD record, EPSS from FIRST.org, KEV from CISA. Refreshed daily.