CVE-2025-71086

In the Linux kernel, the following vulnerability has been resolved: net: rose: fix invalid array index in rose_kill_by_device() rose_kill_by_device() collects sockets into a local array[] and then iterates over them to disconnect sockets bound to a device being brought down. The loop mistakenly indexes array[cnt] instead of array[i]. For cnt < ARRAY_SIZE(array), this reads an uninitialized entry; for cnt == ARRAY_SIZE(array), it is an out-of-bounds read. Either case can lead to an invalid socket pointer dereference and also leaks references taken via sock_hold(). Fix the index to use i.
Configurations

Configuration 1 (hide)

OR cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*
cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*
cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*
cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*
cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*
cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*
cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*
cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*
cpe:2.3:o:linux:linux_kernel:6.7:-:*:*:*:*:*:*
cpe:2.3:o:linux:linux_kernel:6.19:rc1:*:*:*:*:*:*
cpe:2.3:o:linux:linux_kernel:6.19:rc2:*:*:*:*:*:*
cpe:2.3:o:linux:linux_kernel:6.19:rc3:*:*:*:*:*:*
cpe:2.3:o:linux:linux_kernel:6.19:rc4:*:*:*:*:*:*
cpe:2.3:o:linux:linux_kernel:6.19:rc5:*:*:*:*:*:*
cpe:2.3:o:linux:linux_kernel:6.19:rc6:*:*:*:*:*:*
cpe:2.3:o:linux:linux_kernel:6.19:rc7:*:*:*:*:*:*
cpe:2.3:o:linux:linux_kernel:6.19:rc8:*:*:*:*:*:*

History

25 Mar 2026, 18:57

Type Values Removed Values Added
CWE CWE-129
CPE cpe:2.3:o:linux:linux_kernel:6.19:rc1:*:*:*:*:*:*
cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*
cpe:2.3:o:linux:linux_kernel:6.19:rc8:*:*:*:*:*:*
cpe:2.3:o:linux:linux_kernel:6.19:rc3:*:*:*:*:*:*
cpe:2.3:o:linux:linux_kernel:6.19:rc5:*:*:*:*:*:*
cpe:2.3:o:linux:linux_kernel:6.19:rc4:*:*:*:*:*:*
cpe:2.3:o:linux:linux_kernel:6.19:rc2:*:*:*:*:*:*
cpe:2.3:o:linux:linux_kernel:6.19:rc6:*:*:*:*:*:*
cpe:2.3:o:linux:linux_kernel:6.7:-:*:*:*:*:*:*
cpe:2.3:o:linux:linux_kernel:6.19:rc7:*:*:*:*:*:*
First Time Linux
Linux linux Kernel
References () https://git.kernel.org/stable/c/1418c12cd3bba79dc56b57b61c99efe40f579981 - () https://git.kernel.org/stable/c/1418c12cd3bba79dc56b57b61c99efe40f579981 - Patch
References () https://git.kernel.org/stable/c/6595beb40fb0ec47223d3f6058ee40354694c8e4 - () https://git.kernel.org/stable/c/6595beb40fb0ec47223d3f6058ee40354694c8e4 - Patch
References () https://git.kernel.org/stable/c/819fb41ae54960f66025802400c9d3935eef4042 - () https://git.kernel.org/stable/c/819fb41ae54960f66025802400c9d3935eef4042 - Patch
References () https://git.kernel.org/stable/c/92d900aac3a5721fb54f3328f1e089b44a861c38 - () https://git.kernel.org/stable/c/92d900aac3a5721fb54f3328f1e089b44a861c38 - Patch
References () https://git.kernel.org/stable/c/9f6185a32496834d6980b168cffcccc2d6b17280 - () https://git.kernel.org/stable/c/9f6185a32496834d6980b168cffcccc2d6b17280 - Patch
References () https://git.kernel.org/stable/c/b409ba9e1e63ccf3ab4cc061e33c1f804183543e - () https://git.kernel.org/stable/c/b409ba9e1e63ccf3ab4cc061e33c1f804183543e - Patch
References () https://git.kernel.org/stable/c/ed2639414d43ba037f798eaf619e878309310451 - () https://git.kernel.org/stable/c/ed2639414d43ba037f798eaf619e878309310451 - Patch
CVSS v2 : unknown
v3 : unknown
v2 : unknown
v3 : 7.8

19 Jan 2026, 13:16

Type Values Removed Values Added
References
  • () https://git.kernel.org/stable/c/819fb41ae54960f66025802400c9d3935eef4042 -
  • () https://git.kernel.org/stable/c/ed2639414d43ba037f798eaf619e878309310451 -

13 Jan 2026, 16:16

Type Values Removed Values Added
New CVE

Information

Published : 2026-01-13 16:16

Updated : 2026-03-25 18:57


NVD link : CVE-2025-71086

Mitre link : CVE-2025-71086

CVE.ORG link : CVE-2025-71086


JSON object : View

Products Affected

linux

  • linux_kernel
CWE
CWE-129

Improper Validation of Array Index