CVE-2025-71081
Severity CVSS v4.0:
Pending analysis
Type:
Unavailable / Other
Publication date:
13/01/2026
Last modified:
25/03/2026
Description
In the Linux kernel, the following vulnerability has been resolved:<br />
<br />
ASoC: stm32: sai: fix OF node leak on probe<br />
<br />
The reference taken to the sync provider OF node when probing the<br />
platform device is currently only dropped if the set_sync() callback<br />
fails during DAI probe.<br />
<br />
Make sure to drop the reference on platform probe failures (e.g. probe<br />
deferral) and on driver unbind.<br />
<br />
This also avoids a potential use-after-free in case the DAI is ever<br />
reprobed without first rebinding the platform driver.
Impact
Base Score 3.x
5.50
Severity 3.x
MEDIUM
Vulnerable products and versions
| CPE | From | Up to |
|---|---|---|
| cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:* | 4.15.1 (including) | 5.15.198 (excluding) |
| cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:* | 5.16 (including) | 6.1.160 (excluding) |
| cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:* | 6.2 (including) | 6.6.120 (excluding) |
| cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:* | 6.7 (including) | 6.12.64 (excluding) |
| cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:* | 6.13 (including) | 6.18.4 (excluding) |
| cpe:2.3:o:linux:linux_kernel:4.15:-:*:*:*:*:*:* | ||
| cpe:2.3:o:linux:linux_kernel:6.19:rc1:*:*:*:*:*:* | ||
| cpe:2.3:o:linux:linux_kernel:6.19:rc2:*:*:*:*:*:* | ||
| cpe:2.3:o:linux:linux_kernel:6.19:rc3:*:*:*:*:*:* | ||
| cpe:2.3:o:linux:linux_kernel:6.19:rc4:*:*:*:*:*:* | ||
| cpe:2.3:o:linux:linux_kernel:6.19:rc5:*:*:*:*:*:* | ||
| cpe:2.3:o:linux:linux_kernel:6.19:rc6:*:*:*:*:*:* | ||
| cpe:2.3:o:linux:linux_kernel:6.19:rc7:*:*:*:*:*:* | ||
| cpe:2.3:o:linux:linux_kernel:6.19:rc8:*:*:*:*:*:* |
To consult the complete list of CPE names with products and versions, see this page
References to Advisories, Solutions, and Tools
- https://git.kernel.org/stable/c/23261f0de09427367e99f39f588e31e2856a690e
- https://git.kernel.org/stable/c/3752afcc6d80d5525e236e329895ba2cb93bcb26
- https://git.kernel.org/stable/c/4054a3597d047f3fe87864ef87f399b5d523e6c0
- https://git.kernel.org/stable/c/7daa50a2157e41c964b745ab1dc378b5b3b626d1
- https://git.kernel.org/stable/c/acda653169e180b1d860dbb6bc5aceb105858394
- https://git.kernel.org/stable/c/bae74771fc5d3b2a9cf6f5aa64596083d032c4a3



