PT-2026-2605 · Linux+2 · Linux Kernel+2
Published
2026-01-13
·
Updated
2026-05-11
·
CVE-2025-71084
CVSS v3.1
5.5
Medium
| Vector | AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H |
Name of the Vulnerable Software and Affected Versions
Linux kernel (affected versions not specified)
Description
A flaw exists in the Linux kernel’s RDMA/cm component where a reference to the multicast GID table is leaked when a CM ID is destroyed while a multicast creation CM event is still queued. This leak occurs because
cancel work sync() prevents the work from running, which also prevents the destruction of the ah attr. The issue manifests as a warning in the kernel logs, specifically related to GID entry reference leaks. The gid table release one function and release gid table are involved in the leak.Recommendations
At the moment, there is no information about a newer version that contains a fix for this vulnerability.
Exploit
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Linuxmint
Linux Kernel
Ubuntu