In the Linux kernel, the following vulnerability has been resolved:
net: rose: fix invalid array index in rose_kill_by_device()
rose_kill_by_device() collects sockets into a local array[] and then
iterates over them to disconnect sockets bound to a device being brought
down.
The loop mistakenly indexes array[cnt] instead of array[i]. For cnt <
ARRAY_SIZE(array), this reads an uninitialized entry; for cnt ==
ARRAY_SIZE(array), it is an out-of-bounds read. Either case can lead to
an invalid socket pointer dereference and also leaks references taken
via sock_hold().
Fix the index to use i.
References
Configurations
Configuration 1 (hide)
|
History
25 Mar 2026, 18:57
| Type | Values Removed | Values Added |
|---|---|---|
| CWE | CWE-129 | |
| CPE | cpe:2.3:o:linux:linux_kernel:6.19:rc1:*:*:*:*:*:* cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:* cpe:2.3:o:linux:linux_kernel:6.19:rc8:*:*:*:*:*:* cpe:2.3:o:linux:linux_kernel:6.19:rc3:*:*:*:*:*:* cpe:2.3:o:linux:linux_kernel:6.19:rc5:*:*:*:*:*:* cpe:2.3:o:linux:linux_kernel:6.19:rc4:*:*:*:*:*:* cpe:2.3:o:linux:linux_kernel:6.19:rc2:*:*:*:*:*:* cpe:2.3:o:linux:linux_kernel:6.19:rc6:*:*:*:*:*:* cpe:2.3:o:linux:linux_kernel:6.7:-:*:*:*:*:*:* cpe:2.3:o:linux:linux_kernel:6.19:rc7:*:*:*:*:*:* |
|
| First Time |
Linux
Linux linux Kernel |
|
| References | () https://git.kernel.org/stable/c/1418c12cd3bba79dc56b57b61c99efe40f579981 - Patch | |
| References | () https://git.kernel.org/stable/c/6595beb40fb0ec47223d3f6058ee40354694c8e4 - Patch | |
| References | () https://git.kernel.org/stable/c/819fb41ae54960f66025802400c9d3935eef4042 - Patch | |
| References | () https://git.kernel.org/stable/c/92d900aac3a5721fb54f3328f1e089b44a861c38 - Patch | |
| References | () https://git.kernel.org/stable/c/9f6185a32496834d6980b168cffcccc2d6b17280 - Patch | |
| References | () https://git.kernel.org/stable/c/b409ba9e1e63ccf3ab4cc061e33c1f804183543e - Patch | |
| References | () https://git.kernel.org/stable/c/ed2639414d43ba037f798eaf619e878309310451 - Patch | |
| CVSS |
v2 : v3 : |
v2 : unknown
v3 : 7.8 |
19 Jan 2026, 13:16
| Type | Values Removed | Values Added |
|---|---|---|
| References |
|
13 Jan 2026, 16:16
| Type | Values Removed | Values Added |
|---|---|---|
| New CVE |
Information
Published : 2026-01-13 16:16
Updated : 2026-03-25 18:57
NVD link : CVE-2025-71086
Mitre link : CVE-2025-71086
CVE.ORG link : CVE-2025-71086
JSON object : View
Products Affected
linux
- linux_kernel
CWE
CWE-129
Improper Validation of Array Index
