๐Ÿ” CVE Alert

CVE-2025-71161

UNKNOWN 0.0

dm-verity: disable recursive forward error correction

CVSS Score
0.0
EPSS Score
0.0%
EPSS Percentile
0th

In the Linux kernel, the following vulnerability has been resolved: dm-verity: disable recursive forward error correction There are two problems with the recursive correction: 1. It may cause denial-of-service. In fec_read_bufs, there is a loop that has 253 iterations. For each iteration, we may call verity_hash_for_block recursively. There is a limit of 4 nested recursions - that means that there may be at most 253^4 (4 billion) iterations. Red Hat QE team actually created an image that pushes dm-verity to this limit - and this image just makes the udev-worker process get stuck in the 'D' state. 2. It doesn't work. In fec_read_bufs we store data into the variable "fio->bufs", but fio bufs is shared between recursive invocations, if "verity_hash_for_block" invoked correction recursively, it would overwrite partially filled fio->bufs.

Vendor linux
Product linux
Ecosystems
Industries
Technology
Published Jan 23, 2026
Last Updated Mar 25, 2026
Stay Ahead of the Next One

Get instant alerts for linux linux

Be the first to know when new unknown vulnerabilities affecting linux linux are published โ€” delivered to Slack, Telegram or Discord.

Get Free Alerts โ†’ Free ยท No credit card ยท 60 sec setup

Affected Versions

Linux / Linux
a739ff3f543afbb4a041c16cd0182c8e8d366e70 < e227d2b229c7529bd98d348efc55262ccf24ab35 a739ff3f543afbb4a041c16cd0182c8e8d366e70 < 897d9006e75f46f8bd7df78faa424327ae6a4bcf a739ff3f543afbb4a041c16cd0182c8e8d366e70 < 4220cb37406915c926c0e4a3dbab77cd9cceeb1e a739ff3f543afbb4a041c16cd0182c8e8d366e70 < 232948cf600fba69aff36b25d85ef91a73a35756 a739ff3f543afbb4a041c16cd0182c8e8d366e70 < d9f3e47d3fae0c101d9094bc956ed24e7a0ee801
Linux / Linux
4.5

References

NVD โ†— CVE.org โ†— EPSS Data โ†—
git.kernel.org: https://git.kernel.org/stable/c/e227d2b229c7529bd98d348efc55262ccf24ab35 git.kernel.org: https://git.kernel.org/stable/c/897d9006e75f46f8bd7df78faa424327ae6a4bcf git.kernel.org: https://git.kernel.org/stable/c/4220cb37406915c926c0e4a3dbab77cd9cceeb1e git.kernel.org: https://git.kernel.org/stable/c/232948cf600fba69aff36b25d85ef91a73a35756 git.kernel.org: https://git.kernel.org/stable/c/d9f3e47d3fae0c101d9094bc956ed24e7a0ee801