Security Advisory

CVE-2025-71203

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2026-02-14 16:27:02
Last updated 2026-05-11 21:56:39
Assigner Linux
State PUBLISHED

Description

In the Linux kernel, the following vulnerability has been resolved: riscv: Sanitize syscall table indexing under speculation The syscall number is a user-controlled value used to index into the syscall table. Use array_index_nospec() to clamp this value after the bounds check to prevent speculative out-of-bounds access and subsequent data leakage via cache side channels.