CVE-2025-71076 PUBLISHED

In the Linux kernel, the following vulnerability has been resolved: scsi: aic94xx: fix use-after-free in device removal path The asd_pci_remove() function fails to synchronize with pending tasklets before freeing the asd_ha structure, leading to a potential use-after-free vulnerability. When a device removal is triggered (via hot-unplug or module unload), race condition can occur. The fix adds tasklet_kill() before freeing the asd_ha structure, ensuring all scheduled tasklets complete before cleanup proceeds.

EPSS 0.03% · 6.7th percentile

Risk Scores

EPSS Score
0.03%
6.7th percentile

Affected Products

VendorProductVersions
LinuxLinux6.18.3, 6.19, 2908d778ab3e244900c310974e1fc1c69066e450
linuxlinux_kernel2.6.19, 2.6.19, 2.6.19

Timeline

References

…and 63 more

Open in Interactive Console →