Linux Kernel Vulnerability in i915 Graphics Driver
CVE-2025-71130
What is CVE-2025-71130?
A newly identified vulnerability in the Linux kernel's i915 graphics driver relates to improper initialization of the eb.vma array within the i915_gem_do_execbuffer function. This oversight can lead to NULL dereference issues when subsequent operations fail during virtual memory area (VMA) lookups. The vulnerability arises because, instead of being pre-initialized to NULL, buffer pointers are mistakenly set to a slab poison value. As a result, error handling functions may not recognize certain errored states properly, complicating resource cleanup and potentially leading to system instability. A patch has been implemented to ensure that the eb.vma array is zero-initialized at the outset, thereby preventing such issues and enhancing overall system resilience.
Affected Version(s)
Linux 544460c33821b44c2f0c643121303c3dc3f66ef1 < 25d69e07770745992387c016613fd7ac8eaf9893
Linux 544460c33821b44c2f0c643121303c3dc3f66ef1 < 0336188cc85d0eab8463bd1bbd4ded4e9602de8b
Linux 544460c33821b44c2f0c643121303c3dc3f66ef1 < 24d55ac8e31d2f8197bfad71ffcb3bae21ed7117