CVE-2025-71270 addresses a vulnerability in the Linux kernel's LoongArch architecture, where the BPF JIT could fail to properly handle recoverable memory access errors (ADEM exceptions) generated by BPF programs. This fix ensures safe execution by enabling architecture-specific exception fixup for BPF_PROBE_MEM* instructions, preventing potential system instability. The vulnerability has a low FAUCET Risk Score of 20.0 and a very low EPSS score, suggesting minimal immediate threat. There is no evidence of active exploitation, public exploit code, or significant community attention regarding this CVE.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
>= 6.2, < 6.6.124CPE matchmatch criteria | cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:* | ||
>= 6.7, < 6.12.70CPE matchmatch criteria | cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:* | ||
>= 6.13, < 6.18.10CPE matchmatch criteria | cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:* | ||
6.19CPE matchmatch criteria | cpe:2.3:o:linux:linux_kernel:6.19:rc1:*:*:*:*:*:* | ||
6.19CPE matchmatch criteria | cpe:2.3:o:linux:linux_kernel:6.19:rc2:*:*:*:*:*:* |
CVSS version used by this source: 3.1
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
The average CVE in this peer group has 0.0 Twitter, 0.0 Reddit, 0.0 Bluesky, 0.0 Mastodon, and 0.1 GitHub mentions.
The average CVE in this peer group has 0.1 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.
Remediation records are not available for this CVE.