Name CVE-2025-22071 Description In the Linux kernel, the following vulnerability has been resolved: spufs: fix a leak in spufs_create_context() Leak fixes back in 2008 missed one case - if we are trying to set affinity and spufs_mkdir() fails, we need to drop the reference to neighbor. Source CVE (at NVD ; CERT , ENISA , LWN , oss-sec , fulldisc , Debian ELTS , Red Hat , Ubuntu , Gentoo , SUSE bugzilla /CVE , GitHub advisories /code /issues , web search , more )References DLA-4193-1 , DSA-5907-1
Vulnerable and fixed packages The table below lists information on source packages.
Source Package Release Version Status linux (PTS )bullseye 5.10.223-1 vulnerable bullseye (security) 5.10.251-1 vulnerable bookworm 6.1.159-1 fixed bookworm (security) 6.1.164-1 fixed trixie 6.12.73-1 fixed trixie (security) 6.12.85-1 fixed sid, forky 6.19.14-1 fixed linux-6.1 (PTS )bullseye (security) 6.1.164-1~deb11u1 fixed
The information below is based on the following data on fixed versions.
Notes [bullseye] - linux <ignored> (powerpc, ppc64 not release architectures) https://git.kernel.org/linus/0f5cce3fc55b08ee4da3372baccf4bcd36a98396 (6.15-rc1)