CVE-2025-71146

MEDIUM

Linux kernel - Info Disclosure

Title source: llm

Description

In the Linux kernel, the following vulnerability has been resolved: netfilter: nf_conncount: fix leaked ct in error paths There are some situations where ct might be leaked as error paths are skipping the refcounted check and return immediately. In order to solve it make sure that the check is always called.

Scores

CVSS v3 5.5
EPSS 0.0001
EPSS Percentile 3.0%
Attack Vector LOCAL
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H

Classification

CWE
CWE-401
Status published

Affected Products (6)

linux/Kernel < 6.12.64linux
linux/Kernel < 6.18.3linux
linux/linux_kernel < 6.18
linux/linux_kernel
linux/linux_kernel
linux/linux_kernel

Timeline

Published Jan 23, 2026
Tracked Since Feb 18, 2026