CVE-2025-71289: Linux Kernel

Medium severity, CVSS 5.5. EPSS: 0.3% chance of exploitation in the next 30 days.

In the Linux kernel, the following vulnerability has been resolved: fs/ntfs3: handle attr_set_size() errors when truncating files If attr_set_size() fails while truncating down, the error is silently ignored and the inode may be left in an inconsistent state.

Affected products

  • Linux Linux Kernel: from 5.15, before 6.19.6 (fixed in 6.19.6)

Published 2026-05-06. Last modified 2026-07-30.