CNNVD-202601-2166 Information

CNNVD ID

CNNVD-202601-2166

CVE-2025-71099

  • CNNVD Published: 2026-01-13

Description (Chinese)

Linux kernel是美国Linux基金会的开源操作系统Linux所使用的内核。 Linux kernel存在安全漏洞,该漏洞源于xe_oa_add_config_ioctl函数中在释放锁后访问oa_config->id,可能导致释放后重用。

Description (English)

Linux Kernel is the kernel used by Linux, the Open Source Operator System of the Linux Foundation of the United States. Linux Kernel has a security loophole, which originates from the xe oa add config ioctl function, visiting aoa config->id after release lock, which may lead to reuse after release.

Hazard Level

High

Vulnerability Type

其他

Affected Vendor

Linux

Published

2026-01-13

Last Modified

2026-02-24

References

https://git.kernel.org/stable/c/7cdb9a9da935c687563cc682155461fef5f9b48d https://git.kernel.org/stable/c/c6d30b65b7a44dac52ad49513268adbf19eab4a2 https://git.kernel.org/stable/c/dcb171931954c51a1a7250d558f02b8f36570783

Patch

https://www.kernel.org/

Share on: