CVE-2025-71068

Source
https://cve.org/CVERecord?id=CVE-2025-71068
Import Source
https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2025-71068.json
JSON Data
https://api.test.osv.dev/v1/vulns/CVE-2025-71068
Downstream
Related
Published
2026-01-13T15:31:23.283Z
Modified
2026-03-20T12:46:34.763171Z
Summary
svcrdma: bound check rq_pages index in inline path
Details

In the Linux kernel, the following vulnerability has been resolved:

svcrdma: bound check rq_pages index in inline path

svcrdmacopyinlinerange indexed rqstp->rqpages[rccurpage] without verifying rc_curpage stays within the allocated page array. Add guards before the first use and after advancing to a new page.

Database specific
{
    "cna_assigner": "Linux",
    "osv_generated_from": "https://github.com/CVEProject/cvelistV5/tree/main/cves/2025/71xxx/CVE-2025-71068.json"
}
References

Affected packages

Git / git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git

Affected ranges

Type
GIT
Repo
https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git
Events
Introduced
d7cc73972661be4a02a1b09f1d9b3283c6c05154
Fixed
a22316f5e9a29e4b92030bd8fb9435fe0eb1d5c9
Fixed
7ba826aae1d43212f3baa53a2175ad949e21926e
Fixed
5f140b525180c628db8fa6c897f138194a2de417
Fixed
da1ccfc4c452541584a4eae89e337cfa21be6d5a
Fixed
d1bea0ce35b6095544ee82bb54156fc62c067e58

Database specific

source
"https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2025-71068.json"

Linux / Kernel

Package

Name
Kernel

Affected ranges

Type
ECOSYSTEM
Events
Introduced
5.11.0
Fixed
5.15.198
Type
ECOSYSTEM
Events
Introduced
5.16.0
Fixed
6.6.120
Type
ECOSYSTEM
Events
Introduced
6.7.0
Fixed
6.12.64
Type
ECOSYSTEM
Events
Introduced
6.13.0
Fixed
6.18.3

Database specific

source
"https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2025-71068.json"