{"dataType":"CVE_RECORD","dataVersion":"5.2","cveMetadata":{"cveId":"CVE-2025-71108","assignerOrgId":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","state":"PUBLISHED","assignerShortName":"Linux","dateReserved":"2026-01-13T15:30:19.652Z","datePublished":"2026-01-14T15:05:56.553Z","dateUpdated":"2026-05-11T21:54:58.410Z"},"containers":{"cna":{"providerMetadata":{"orgId":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","shortName":"Linux","dateUpdated":"2026-05-11T21:54:58.410Z"},"descriptions":[{"lang":"en","value":"In the Linux kernel, the following vulnerability has been resolved:\n\nusb: typec: ucsi: Handle incorrect num_connectors capability\n\nThe UCSI spec states that the num_connectors field is 7 bits, and the\n8th bit is reserved and should be set to zero.\nSome buggy FW has been known to set this bit, and it can lead to a\nsystem not booting.\nFlag that the FW is not behaving correctly, and auto-fix the value\nso that the system boots correctly.\n\nFound on Lenovo P1 G8 during Linux enablement program. The FW will\nbe fixed, but seemed worth addressing in case it hit platforms that\naren't officially Linux supported."}],"affected":[{"product":"Linux","vendor":"Linux","defaultStatus":"unaffected","repo":"https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git","programFiles":["drivers/usb/typec/ucsi/ucsi.c"],"versions":[{"version":"c1b0bc2dabfa884dea49c02adaf3cd6b52b33d2f","lessThan":"07c8d2a109d847775b3b4e2c3294c8e1eea75432","status":"affected","versionType":"git"},{"version":"c1b0bc2dabfa884dea49c02adaf3cd6b52b33d2f","lessThan":"58941bbb0050e365a98c64f1fc4a9a0ac127dba6","status":"affected","versionType":"git"},{"version":"c1b0bc2dabfa884dea49c02adaf3cd6b52b33d2f","lessThan":"f72f97d0aee4a993a35f2496bca5efd24827235d","status":"affected","versionType":"git"},{"version":"c1b0bc2dabfa884dea49c02adaf3cd6b52b33d2f","lessThan":"914605b0de8128434eafc9582445306830748b93","status":"affected","versionType":"git"},{"version":"c1b0bc2dabfa884dea49c02adaf3cd6b52b33d2f","lessThan":"3042a57a8e8bce4a3100c3f6f03dc372aab24943","status":"affected","versionType":"git"},{"version":"c1b0bc2dabfa884dea49c02adaf3cd6b52b33d2f","lessThan":"132fe187e0d940f388f839fe2cde9b84106ad20d","status":"affected","versionType":"git"},{"version":"c1b0bc2dabfa884dea49c02adaf3cd6b52b33d2f","lessThan":"30cd2cb1abf4c4acdb1ddb468c946f68939819fb","status":"affected","versionType":"git"}]},{"product":"Linux","vendor":"Linux","defaultStatus":"affected","repo":"https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git","programFiles":["drivers/usb/typec/ucsi/ucsi.c"],"versions":[{"version":"4.13","status":"affected"},{"version":"0","lessThan":"4.13","status":"unaffected","versionType":"semver"},{"version":"5.10.248","lessThanOrEqual":"5.10.*","status":"unaffected","versionType":"semver"},{"version":"5.15.198","lessThanOrEqual":"5.15.*","status":"unaffected","versionType":"semver"},{"version":"6.1.160","lessThanOrEqual":"6.1.*","status":"unaffected","versionType":"semver"},{"version":"6.6.120","lessThanOrEqual":"6.6.*","status":"unaffected","versionType":"semver"},{"version":"6.12.64","lessThanOrEqual":"6.12.*","status":"unaffected","versionType":"semver"},{"version":"6.18.3","lessThanOrEqual":"6.18.*","status":"unaffected","versionType":"semver"},{"version":"6.19","lessThanOrEqual":"*","status":"unaffected","versionType":"original_commit_for_fix"}]}],"cpeApplicability":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*","versionStartIncluding":"4.13","versionEndExcluding":"5.10.248"},{"vulnerable":true,"criteria":"cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*","versionStartIncluding":"4.13","versionEndExcluding":"5.15.198"},{"vulnerable":true,"criteria":"cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*","versionStartIncluding":"4.13","versionEndExcluding":"6.1.160"},{"vulnerable":true,"criteria":"cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*","versionStartIncluding":"4.13","versionEndExcluding":"6.6.120"},{"vulnerable":true,"criteria":"cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*","versionStartIncluding":"4.13","versionEndExcluding":"6.12.64"},{"vulnerable":true,"criteria":"cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*","versionStartIncluding":"4.13","versionEndExcluding":"6.18.3"},{"vulnerable":true,"criteria":"cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*","versionStartIncluding":"4.13","versionEndExcluding":"6.19"}]}]}],"references":[{"url":"https://git.kernel.org/stable/c/07c8d2a109d847775b3b4e2c3294c8e1eea75432"},{"url":"https://git.kernel.org/stable/c/58941bbb0050e365a98c64f1fc4a9a0ac127dba6"},{"url":"https://git.kernel.org/stable/c/f72f97d0aee4a993a35f2496bca5efd24827235d"},{"url":"https://git.kernel.org/stable/c/914605b0de8128434eafc9582445306830748b93"},{"url":"https://git.kernel.org/stable/c/3042a57a8e8bce4a3100c3f6f03dc372aab24943"},{"url":"https://git.kernel.org/stable/c/132fe187e0d940f388f839fe2cde9b84106ad20d"},{"url":"https://git.kernel.org/stable/c/30cd2cb1abf4c4acdb1ddb468c946f68939819fb"}],"title":"usb: typec: ucsi: Handle incorrect num_connectors capability","x_generator":{"engine":"bippy-1.2.0"}}}}