CVE-2025-71136

HIGH EPSS 1.9%
Published Jan 14, 20265mo ago · Modified Jun 17, 20261w ago
7.1 CVSS 3.1
High
Find Similar
Published Jan 14, 2026 5mo ago
Last Modified Jun 17, 2026 1w ago

Description

In the Linux kernel, the following vulnerability has been resolved: media: adv7842: Avoid possible out-of-bounds array accesses in adv7842_cp_log_status() It's possible for cp_read() and hdmi_read() to return -EIO. Those values are further used as indexes for accessing arrays. Fix that by checking return values where it's needed. Found by Linux Verification Center (linuxtesting.org) with SVACE.

CVSS Details

Base Score
7.1
Exploitability
1.8
Impact
5.2
Vector string
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:H
Attack Vector Local
Attack Complexity Low
Privileges Required Low
User Interaction None
Scope Unchanged
Confidentiality High
Integrity None
Availability High

Threat Intelligence

EPSS Exploit Probability
1.9% percentile
Exploit & Patch Status
No Known Exploit
Patch Available

Weaknesses 1

CWE-125 Out-of-bounds Read Memory Safety

Affected Products 15

VendorProductVersionRange
linuxlinux_kernel*≥3.12.1  –  <5.10.248
linuxlinux_kernel*≥5.11  –  <5.15.198
linuxlinux_kernel*≥5.16  –  <6.1.160
linuxlinux_kernel*≥6.2  –  <6.6.120
linuxlinux_kernel*≥6.7  –  <6.12.64
linuxlinux_kernel*≥6.13  –  <6.18.4
linuxlinux_kernel3.12any
linuxlinux_kernel6.19any
linuxlinux_kernel6.19any
linuxlinux_kernel6.19any
linuxlinux_kernel6.19any
linuxlinux_kernel6.19any
linuxlinux_kernel6.19any
linuxlinux_kernel6.19any
linuxlinux_kernel6.19any

References 7

  • git.kernel.org https://git.kernel.org/stable/c/60dde0960e3ead8a9569f6c494d90d0232ac0983
    Patch
  • git.kernel.org https://git.kernel.org/stable/c/8163419e3e05d71dcfa8fb49c8fdf8d76908fe51
    Patch
  • git.kernel.org https://git.kernel.org/stable/c/a73881ae085db5702d8b13e2fc9f78d51c723d3f
    Patch
  • git.kernel.org https://git.kernel.org/stable/c/b693d48a6ed0cd09171103ad418e4a693203d6e4
    Patch
  • git.kernel.org https://git.kernel.org/stable/c/d6a22a4a96e4dfe6897cb3532d2b3016d87706f0
    Patch
  • git.kernel.org https://git.kernel.org/stable/c/f81ee181cb036d046340c213091b69d9a8701a76
    Patch
  • git.kernel.org https://git.kernel.org/stable/c/f913b9a2ccd6114b206b9e91dae5e3dc13a415a0
    Patch

Remediation

  • git.kernel.org https://git.kernel.org/stable/c/60dde0960e3ead8a9569f6c494d90d0232ac0983
    Patch
  • git.kernel.org https://git.kernel.org/stable/c/8163419e3e05d71dcfa8fb49c8fdf8d76908fe51
    Patch
  • git.kernel.org https://git.kernel.org/stable/c/a73881ae085db5702d8b13e2fc9f78d51c723d3f
    Patch
  • git.kernel.org https://git.kernel.org/stable/c/b693d48a6ed0cd09171103ad418e4a693203d6e4
    Patch
  • git.kernel.org https://git.kernel.org/stable/c/d6a22a4a96e4dfe6897cb3532d2b3016d87706f0
    Patch
  • git.kernel.org https://git.kernel.org/stable/c/f81ee181cb036d046340c213091b69d9a8701a76
    Patch
  • git.kernel.org https://git.kernel.org/stable/c/f913b9a2ccd6114b206b9e91dae5e3dc13a415a0
    Patch