# CVE-2025-71161

## Summary

- **CVE ID:** CVE-2025-71161
- **Severity:** HIGH
- **CVSS Score:** 7.5 (CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H)
- **CWE:** N/A
- **Published:** Jan 23, 2026
- **Last Modified:** Sep 8, 2026

## Description

In the Linux kernel, the following vulnerability has been resolved:

dm-verity: disable recursive forward error correction

There are two problems with the recursive correction:

1. It may cause denial-of-service. In fec_read_bufs, there is a loop that
has 253 iterations. For each iteration, we may call verity_hash_for_block
recursively. There is a limit of 4 nested recursions - that means that
there may be at most 253^4 (4 billion) iterations. Red Hat QE team
actually created an image that pushes dm-verity to this limit - and this
image just makes the udev-worker process get stuck in the 'D' state.

2. It doesn't work. In fec_read_bufs we store data into the variable
"fio->bufs", but fio bufs is shared between recursive invocations, if
"verity_hash_for_block" invoked correction recursively, it would
overwrite partially filled fio->bufs.

## Affected Products

- Linux — Linux (a739ff3f543afbb4a041c16cd0182c8e8d366e70)
- Linux — Linux (4.5)
- Linux — Linux (0)
- Linux — Linux (6.18.6)
- Linux — Linux (6.19)
- Linux — Linux (6.1.167)
- Linux — Linux (6.6.130)
- Linux — Linux (6.12.78)
- Linux — Linux (5.15.209)

## References

- [CNA](https://git.kernel.org/stable/c/232948cf600fba69aff36b25d85ef91a73a35756)
- [CNA](https://git.kernel.org/stable/c/d9f3e47d3fae0c101d9094bc956ed24e7a0ee801)
- [CNA](https://git.kernel.org/stable/c/e227d2b229c7529bd98d348efc55262ccf24ab35)
- [CNA](https://git.kernel.org/stable/c/897d9006e75f46f8bd7df78faa424327ae6a4bcf)
- [CNA](https://git.kernel.org/stable/c/4220cb37406915c926c0e4a3dbab77cd9cceeb1e)
- [CNA](https://git.kernel.org/stable/c/8b821ca892cfeeaf0bedc9fc72717294f67144d5)
- [siemens-SADP](https://cert-portal.siemens.com/productcert/html/ssa-082556.html)
- [siemens-SADP](https://cert-portal.siemens.com/productcert/html/ssa-019113.html)

## Exploitation Prediction (EPSS)

- **EPSS Score:** 0.35%
- **EPSS Percentile:** 29.0

---
_Exported from OnDuty AI Vulnerability Intelligence on 2026-09-17._