CVE-2025-71287

medium Red Hat
Published: May 6, 2026 (8 days ago)
Last Modified: May 6, 2026
Vendor: Red Hat
Source: REDHAT

Description

A flaw was found in the Linux kernel's `mtk-smi` driver. This vulnerability occurs due to a failure to properly drop a reference to the SMI device during `larb` probe on late probe failure or driver unbind. An attacker could potentially exploit this memory leak to cause resource exhaustion, leading to a Denial of Service (DoS) condition.

CWE

CWE-772

Affected Products

Red Hat Enterprise Linux 10Red Hat Enterprise Linux 6Red Hat Enterprise Linux 7Red Hat Enterprise Linux 8Red Hat Enterprise Linux 9

References