CVE-2025-71099 describes a use-after-free vulnerability in the Linux kernel's drm/xe/oa component, specifically within the xe_oa_add_config_ioctl() function. This flaw arises from accessing an object ID after releasing a lock that protects the object's lifetime, allowing a race condition where an attacker could free the object before its subsequent dereference. While no CVSS score is provided, its FAUCET Risk Score is 7/100, indicating a low-to-moderate risk. There is no public exploit code available, nor is it listed on the KEV catalog, suggesting it is not actively exploited, though it has garnered some community discussion and media coverage.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
>= 6.11.1, < 6.12.64CPE matchmatch criteria | cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:* | ||
>= 6.13, < 6.18.4CPE matchmatch criteria | cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:* | ||
6.11CPE matchmatch criteria | cpe:2.3:o:linux:linux_kernel:6.11:-:*:*:*:*:*:* | ||
6.19CPE matchmatch criteria | cpe:2.3:o:linux:linux_kernel:6.19:rc1:*:*:*:*:*:* | ||
6.19CPE matchmatch criteria | cpe:2.3:o:linux:linux_kernel:6.19:rc2:*:*:*:*:*:* |
CVSS version used by this source: 3.1
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
The average CVE in this peer group has 0.0 Twitter, 0.1 Reddit, 0.2 Bluesky, 0.1 Mastodon, and 0.2 GitHub mentions.
The average CVE in this peer group has 0.3 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.
Linux kernel (Raspberry Pi) vulnerabilities
May 7, 2026Linux kernel vulnerabilities
May 7, 2026Linux kernel vulnerabilities
Apr 23, 2026Linux kernel (GCP) vulnerabilities
Apr 17, 2026Linux kernel vulnerabilities
Apr 16, 2026kernel: drm/xe/oa: Fix potential UAF in xe_oa_add_config_ioctl()
Jan 13, 2026