Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1336 CNY

100%

CVE-2025-71081— ASoC: stm32: sai: fix OF node leak on probe

Quick assessment

Affected
Linux Linux
Exploitation
No confirmed in-the-wild exploitation; assess based on exposure
Recommended action
Check the vendor advisory and references for a fixed version. If immediate upgrade is impossible, restrict exposure and increase monitoring.

Linux kernel是美国Linux基金会的开源操作系统Linux所使用的内核。 Linux kernel存在安全漏洞,该漏洞源于探测时未释放OF节点引用,可能导致节点泄漏。

AI Predicted 3.3 Difficulty: Trivial EPSS 0.11% · P2

Possible ATT&CK Techniques 1 AI

T1562.008

Affected Version Matrix 14

VendorProduct Version RangeStatus
Linux Linux 5914d285f6b782892a91d6621723fdc41a775b15< 7daa50a2157e41c964b745ab1dc378b5b3b626d1 affected
5914d285f6b782892a91d6621723fdc41a775b15< acda653169e180b1d860dbb6bc5aceb105858394 affected
5914d285f6b782892a91d6621723fdc41a775b15< 4054a3597d047f3fe87864ef87f399b5d523e6c0 affected
5914d285f6b782892a91d6621723fdc41a775b15< bae74771fc5d3b2a9cf6f5aa64596083d032c4a3 affected
5914d285f6b782892a91d6621723fdc41a775b15< 3752afcc6d80d5525e236e329895ba2cb93bcb26 affected
5914d285f6b782892a91d6621723fdc41a775b15< 23261f0de09427367e99f39f588e31e2856a690e affected
4.15 affected
< 4.15 unaffected
… +6 more rows
Get alerts for future matching vulnerabilities Log in to subscribe

I. Basic Information for CVE-2025-71081

Vulnerability Information

Have questions about the vulnerability? See if Shenlong's analysis helps!
View Shenlong Deep Dive ↗

Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.

Vulnerability Title
ASoC: stm32: sai: fix OF node leak on probe
Source: CVE Program / CVE List V5
Vulnerability Description
In the Linux kernel, the following vulnerability has been resolved: ASoC: stm32: sai: fix OF node leak on probe The reference taken to the sync provider OF node when probing the platform device is currently only dropped if the set_sync() callback fails during DAI probe. Make sure to drop the reference on platform probe failures (e.g. probe deferral) and on driver unbind. This also avoids a potential use-after-free in case the DAI is ever reprobed without first rebinding the platform driver.
Source: CVE Program / CVE List V5
CVSS Information
N/A
Source: CVE Program / CVE List V5
Vulnerability Type
N/A
Source: CVE Program / CVE List V5
Vulnerability Title
Linux kernel 安全漏洞
Source: CNNVD (China National Vulnerability Database)
Vulnerability Description
Linux kernel是美国Linux基金会的开源操作系统Linux所使用的内核。 Linux kernel存在安全漏洞,该漏洞源于探测时未释放OF节点引用,可能导致节点泄漏。
Source: CNNVD (China National Vulnerability Database)
CVSS Information
N/A
Source: CNNVD (China National Vulnerability Database)
Vulnerability Type
N/A
Source: CNNVD (China National Vulnerability Database)

Affected Products

Vendor Product Affected Versions CPE Subscribe
Linux Linux 5914d285f6b782892a91d6621723fdc41a775b15 ~ 7daa50a2157e41c964b745ab1dc378b5b3b626d1 -
Linux Linux 4.15 -

II. Public POCs for CVE-2025-71081

# POC Description Source Link Shenlong Link
AI-Generated POC Premium

No public POC found.

Login to generate AI POC

III. Intelligence Information for CVE-2025-71081

登录查看更多情报信息。

Same Patch Batch · Linux · 2026-01-13 · 93 CVEs total

CVE-2025-71068 9.8 CRITICAL svcrdma: bound check rq_pages index in inline path
CVE-2025-68775 9.8 CRITICAL net/handshake: duplicate handshake cancellations leak socket
CVE-2025-68817 9.8 CRITICAL ksmbd: fix use-after-free in ksmbd_tree_connect_put under concurrency
CVE-2025-68794 9.8 CRITICAL iomap: adjust read range correctly for non-block-aligned positions
CVE-2025-68811 9.8 CRITICAL svcrdma: use rc_pageoff for memcpy byte offset
CVE-2025-68809 9.1 CRITICAL ksmbd: vfs: fix race on m_flags in vfs_cache
CVE-2025-71095 9.1 CRITICAL net: stmmac: fix the crash issue for zero copy XDP_TX action
CVE-2025-71093 9.1 CRITICAL e1000: fix OOB in e1000_tbi_should_accept()
CVE-2025-68818 8.8 HIGH scsi: Revert "scsi: qla2xxx: Perform lockless command completion in abort path"
CVE-2025-71072 8.2 HIGH shmem: fix recovery on rename failures
CVE-2025-68799 8.1 HIGH caif: fix integer underflow in cffrml_receive()
CVE-2025-68803 8.0 HIGH NFSD: NFSv4 file creation neglects setting ACL
CVE-2025-68819 7.8 HIGH media: dvb-usb: dtv5100: fix out-of-bounds in dtv5100_i2c_msg()
CVE-2025-68815 7.8 HIGH net/sched: ets: Remove drr class from the active list if it changes to strict
CVE-2025-71066 7.8 HIGH net/sched: ets: Always remove class from active list before deleting in ets_qdisc_change
CVE-2025-68822 7.8 HIGH Input: alps - fix use-after-free bugs caused by dev3_register_work
CVE-2025-68792 7.8 HIGH tpm2-sessions: Fix out of range indexing in name_size
CVE-2025-68793 7.8 HIGH drm/amdgpu: fix a job->pasid access race in gpu recovery
CVE-2025-71074 7.8 HIGH functionfs: fix the open/removal races
CVE-2025-68795 7.8 HIGH ethtool: Avoid overflowing userspace buffer on stats query

Showing top 20 of 93 CVEs. View all on vendor page &rarr; →

IV. Related Vulnerabilities

V. Comments for CVE-2025-71081

No comments yet


Leave a comment