# CVE-2025-71190

## Summary

- **CVE ID:** CVE-2025-71190
- **Severity:** MEDIUM
- **CVSS Score:** 5.5 (CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H)
- **CWE:** N/A
- **Published:** Jan 31, 2026
- **Last Modified:** Sep 8, 2026

## Description

In the Linux kernel, the following vulnerability has been resolved:

dmaengine: bcm-sba-raid: fix device leak on probe

Make sure to drop the reference taken when looking up the mailbox device
during probe on probe failures and on driver unbind.

## Affected Products

- Linux — Linux (743e1c8ffe4ee5dd7596556dcc3f022ccde13d7b)
- Linux — Linux (4.13)
- Linux — Linux (0)
- Linux — Linux (5.10.249)
- Linux — Linux (5.15.199)
- Linux — Linux (6.1.162)
- Linux — Linux (6.6.122)
- Linux — Linux (6.12.67)
- Linux — Linux (6.18.7)
- Linux — Linux (6.19)

## References

- [CNA](https://git.kernel.org/stable/c/4316e4c4fd2c09f68a262365f21847cafa8fe9dd)
- [CNA](https://git.kernel.org/stable/c/4730f12a192d7314119b3d8331611ab151b87bdf)
- [CNA](https://git.kernel.org/stable/c/bc98e68adfef3b25c06ff08f0808bb59f787420c)
- [CNA](https://git.kernel.org/stable/c/c80ca7bdff158401440741bdcf9175bd8608580b)
- [CNA](https://git.kernel.org/stable/c/db6f1d6d31711e73e6a214c73e6a8fb4cda0483d)
- [CNA](https://git.kernel.org/stable/c/2ed1a9de1f2d727ccae5bc9cc7c63ee3519c0c8b)
- [CNA](https://git.kernel.org/stable/c/7c3a46ebf15a9796b763a54272407fdbf945bed8)
- [siemens-SADP](https://cert-portal.siemens.com/productcert/html/ssa-253495.html)
- [siemens-SADP](https://cert-portal.siemens.com/productcert/html/ssa-019113.html)

## Exploitation Prediction (EPSS)

- **EPSS Score:** 0.19%
- **EPSS Percentile:** 9.4

---
_Exported from OnDuty AI Vulnerability Intelligence on 2026-09-18._