Zero Day MonitorZDM
DashboardVulnerabilitiesTrendingZero-DaysNewsAbout
Login
ImpressumPrivacy Policy
Zero Day Monitor © 2026
3451 articles · 142163 vulns · 36/41 feeds (7d)
← Back to list
—
CVE-2025-71301EXPLOITEDPATCHED
linux · linux kernel

drm/tests: shmem: Hold reservation lock around vmap/vunmap

Description

A vulnerability, classified as critical, has been found in Linux Kernel up to 6.18.15/6.19.5. The impacted element is the function vmap_locked. This manipulation causes privilege escalation. The attacker needs to be present on the local network.

Affected Products

VendorProductVersions
linuxlinux kernel954907f7147dc43e0d1cd4d430c21d143d5fdf55, 954907f7147dc43e0d1cd4d430c21d143d5fdf55, 954907f7147dc43e0d1cd4d430c21d143d5fdf55, 6.16, 6.18.15, 6.19.5

Also Affects

Downstream vendors/products affected by this vulnerability

VendorProductSourceConfidence
open sourceopen source linux kernelcert_advisory90%

References

  • https://git.kernel.org/stable/c/6b953d92f2f29e74b125617c6f00300fa1bed97e
  • https://git.kernel.org/stable/c/e7b7022f11d3cf281c726117478696b83681bf11
  • https://git.kernel.org/stable/c/cda83b099f117f2a28a77bf467af934cb39e49cf

Related News (3 articles)

Tier B
BSI Advisories8h ago
[NEU] [mittel] Linux Kernel: Mehrere Schwachstellen
→ No new info (linked only)
Tier C
VulDB3d ago
CVE-2025-71301 | Linux Kernel up to 6.18.15/6.19.5 vmap_locked privilege escalation
→ No new info (linked only)
Tier C
Linux Kernel CVEs3d ago
CVE-2025-71301: drm/tests: shmem: Hold reservation lock around vmap/vunmap
→ No new info (linked only)
CISA KEV❌ No
Actively exploited✅ Yes
Patch available
6b953d92f2f29e74b125617c6f00300fa1bed97ee7b7022f11d3cf281c726117478696b83681bf11cda83b099f117f2a28a77bf467af934cb39e49cf06.18.166.19.67.0
CWECWE-Privilege Escalation
PublishedMay 8, 2026
Last enriched3d agov2
Tags
CVE-2025-71301
Trending Score63
Source articles3
Independent3
Info Completeness9/14
Missing: cvss, epss, kev, iocs, mitre_attack

Community Vote

0
Login to vote
0 upvotes0 downvotes
No votes yet

Related CVEs (5)

HIGHCVE-2026-31431EXPKEV
crypto: algif_aead - Revert to operating out-of-place
Trending: 122
IMPORTANTCVE-2026-43284EXP
xfrm: esp: avoid in-place decrypt on shared skb frags
Trending: 89
CRITICALCVE-2026-43312EXP
media: i2c: ov5647: Initialize subdev before controls
Trending: 63
CRITICALCVE-2025-71300EXP
Revert "arm64: zynqmp: Add an OP-TEE node to the device tree"
Trending: 63
CRITICALCVE-2026-43289EXP
kexec: derive purgatory entry from symbol
Trending: 63

Pin to Dashboard

Verification

State: unverified
Confidence: 0%

Vulnerability Timeline

CVE Published
May 8, 2026
Discovered by ZDM
May 8, 2026
Actively Exploited
May 8, 2026
Exploit Available
May 8, 2026
Patch Available
May 8, 2026
Updated: description, severity, affectedVersions, cweIds, tags
May 8, 2026

Version History

v2
Last enriched 3d ago
v2Tier C3d ago

Updated severity to CRITICAL, added affected versions 6.18.15 and 6.19.5, and included a new CVE ID CVE-2025-71301.

descriptionseverityaffectedVersionscweIdstags
via VulDB
v13d ago

Initial creation