CVE-2025-71071

Source
https://cve.org/CVERecord?id=CVE-2025-71071
Import Source
https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2025-71071.json
JSON Data
https://api.test.osv.dev/v1/vulns/CVE-2025-71071
Downstream
Related
Published
2026-01-13T15:31:25.400Z
Modified
2026-03-29T17:44:25.278613365Z
Summary
iommu/mediatek: fix use-after-free on probe deferral
Details

In the Linux kernel, the following vulnerability has been resolved:

iommu/mediatek: fix use-after-free on probe deferral

The driver is dropping the references taken to the larb devices during probe after successful lookup as well as on errors. This can potentially lead to a use-after-free in case a larb device has not yet been bound to its driver so that the iommu driver probe defers.

Fix this by keeping the references as expected while the iommu driver is bound.

Database specific
{
    "osv_generated_from": "https://github.com/CVEProject/cvelistV5/tree/main/cves/2025/71xxx/CVE-2025-71071.json",
    "cna_assigner": "Linux"
}
References

Affected packages

Git / git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git

Affected ranges

Type
GIT
Repo
https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git
Events
Introduced
8412e5dd24ffc8bc21a00bfaa0b80d4596cdc9da
Fixed
896ec55da3b90bdb9fc04fedc17ad8c359b2eee5
Type
GIT
Repo
https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git
Events
Introduced
26593928564cf5b576ff05d3cbd958f57c9534bb
Fixed
5c04217d06a1161aaf36267e9d971ab6f847d5a7
Fixed
1ef70a0b104ae8011811f60bcfaa55ff49385171
Fixed
f6c08d3aa441bbc1956e9d65f1cbb89113a5aa8a
Fixed
de83d4617f9fe059623e97acf7e1e10d209625b5
Type
GIT
Repo
https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git
Events
Introduced
0 Unknown introduced commit / All previous commits are affected
Last affected
51080de72e26771f0ed9d44982974279ccbc92b8

Database specific

source
"https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2025-71071.json"

Linux / Kernel

Package

Name
Kernel

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
6.1.160
Type
ECOSYSTEM
Events
Introduced
6.2.0
Fixed
6.6.120
Fixed
6.12.64
Type
ECOSYSTEM
Events
Introduced
6.7.0
Fixed
6.18.3

Database specific

source
"https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2025-71071.json"