CVE-2025-71163: dmaengine: idxd: fix device leaks on compat bind and unbind
dmaengine: idxd: fix device leaks on compat bind and unbind
Affected Software
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Compensating control
For the Linux kernel dmaengine idxd compat bind/unbind sysfs interface, ensure the device reference taken during idxd device lookup is dropped (dmaengine: idxd: fix device leaks on compat bind and unbind).
Event History
Frequently Asked Questions
What is the severity of CVE-2025-71163?
CVE-2025-71163 has a medium severity rating due to potential device leaks affecting the Linux kernel.
How do I fix CVE-2025-71163?
To fix CVE-2025-71163, ensure that you update to the latest version of the Linux kernel where the vulnerability has been resolved.
Which versions of the Linux kernel are affected by CVE-2025-71163?
CVE-2025-71163 affects specific versions of the Linux kernel that employ the dmaengine and idxd interfaces.
What type of vulnerability is CVE-2025-71163?
CVE-2025-71163 is a resource leak vulnerability that occurs during the compat binding and unbinding process in the Linux kernel.
What are the potential impacts of CVE-2025-71163?
The potential impacts of CVE-2025-71163 include memory leaks and resource exhaustion, which could lead to system instability.