CVE Database
/

CVE-2025-71084

Back to search

CVE-2025-71084

Published: Jan 13, 2026

Modified: May 23, 2026

PUBLISHED

Description

In the Linux kernel, the following vulnerability has been resolved: RDMA/cm: Fix leaking the multicast GID table reference If the CM ID is destroyed while the CM event for multicast creating is still queued the cancel_work_sync() will prevent the work from running which also prevents destroying the ah_attr. This leaks a refcount and triggers a WARN: GID entry ref leak for dev syz1 index 2 ref=573 WARNING: CPU: 1 PID: 655 at drivers/infiniband/core/cache.c:809 release_gid_table drivers/infiniband/core/cache.c:806 [inline] WARNING: CPU: 1 PID: 655 at drivers/infiniband/core/cache.c:809 gid_table_release_one+0x284/0x3cc drivers/infiniband/core/cache.c:886 Destroy the ah_attr after canceling the work, it is safe to call this twice.

VendorProductVersions

Linux

Linux

affected
60d613b39e8d0c9f3b526e9c96445422b4562d76 - < d5ce588a9552878859a4d44b70b724216c188a5f
affected
fe454dc31e84f8c14cb8942fcb61666c9f40745b - < abf38398724ecc888f62c678d288da40d11878af
affected
fe454dc31e84f8c14cb8942fcb61666c9f40745b - < ab668a58c4a2ccb6d54add7a76f2f955d15d0196
affected
fe454dc31e84f8c14cb8942fcb61666c9f40745b - < c0acdee513239e1d6e1b490f56be0e6837dfd162
affected
fe454dc31e84f8c14cb8942fcb61666c9f40745b - < 5cb34bb5fd726491b809efbeb5cfd63ae5bf9cf3

+5 more versions

Linux

Linux

affected
5.12
unaffected
0 - < 5.12
unaffected
5.10.248 - <= 5.10.*
unaffected
5.15.198 - <= 5.15.*
unaffected
6.1.160 - <= 6.1.*

+4 more versions

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now