CVE-2025-21687

HIGH EPSS 12.3%
Published Feb 10, 20251y ago · Modified Jun 17, 20261w ago
7.8 CVSS 3.1
High
Find Similar
Published Feb 10, 2025 1y ago
Last Modified Jun 17, 2026 1w ago

Description

In the Linux kernel, the following vulnerability has been resolved: vfio/platform: check the bounds of read/write syscalls count and offset are passed from user space and not checked, only offset is capped to 40 bits, which can be used to read/write out of bounds of the device.

CVSS Details

Base Score
7.8
Exploitability
1.8
Impact
5.9
Vector string
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Attack Vector Local
Attack Complexity Low
Privileges Required Low
User Interaction None
Scope Unchanged
Confidentiality High
Integrity High
Availability High

Threat Intelligence

EPSS Exploit Probability
12.3% percentile
Exploit & Patch Status
No Known Exploit
Patch Available

Weaknesses 2

CWE-125 Out-of-bounds Read Memory Safety
CWE-787 Out-of-bounds Write Memory Safety

Affected Products 14

VendorProductVersionRange
linuxlinux_kernel*≥4.1  –  <5.4.290
linuxlinux_kernel*≥5.5  –  <5.10.234
linuxlinux_kernel*≥5.11  –  <5.15.178
linuxlinux_kernel*≥5.16  –  <6.1.128
linuxlinux_kernel*≥6.2  –  <6.6.75
linuxlinux_kernel*≥6.7  –  <6.12.12
linuxlinux_kernel6.13any
linuxlinux_kernel6.13any
linuxlinux_kernel6.13any
linuxlinux_kernel6.13any
linuxlinux_kernel6.13any
linuxlinux_kernel6.13any
linuxlinux_kernel6.13any
linuxlinux_kernel6.13any

References 14

  • git.kernel.org https://git.kernel.org/stable/c/1485932496a1b025235af8aa1e21988d6b7ccd54
    Patch
  • git.kernel.org https://git.kernel.org/stable/c/665cfd1083866f87301bbd232cb8ba48dcf4acce
    Patch
  • git.kernel.org https://git.kernel.org/stable/c/6bcb8a5b70b80143db9bf12dfa7d53636f824d53
    Patch
  • git.kernel.org https://git.kernel.org/stable/c/92340e6c5122d823ad064984ef7513eba9204048
    Patch
  • git.kernel.org https://git.kernel.org/stable/c/9377cdc118cf327248f1a9dde7b87de067681dc9
  • git.kernel.org https://git.kernel.org/stable/c/a20fcaa230f7472456d12cf761ed13938e320ac3
    Patch
  • git.kernel.org https://git.kernel.org/stable/c/c981c32c38af80737a2fedc16e270546d139ccdd
    Patch
  • git.kernel.org https://git.kernel.org/stable/c/ce9ff21ea89d191e477a02ad7eabf4f996b80a69
    Patch
  • git.kernel.org https://git.kernel.org/stable/c/d19a8650fd3d7aed8d1af1d9a77f979a8430eba1
    Patch
  • git.kernel.org https://git.kernel.org/stable/c/ed81d82bb6e9df3a137f2c343ed689e6c68268ef
  • git.kernel.org https://git.kernel.org/stable/c/f21636f24b6786c8b13f1af4319fa75ffcf17f38
    Patch
  • git.kernel.org https://git.kernel.org/stable/c/f65ce06387f8c1fb54bd59e18a8428248ec68eaf
  • lists.debian.org https://lists.debian.org/debian-lts-announce/2025/03/msg00001.html
  • lists.debian.org https://lists.debian.org/debian-lts-announce/2025/03/msg00002.html

Remediation

  • git.kernel.org https://git.kernel.org/stable/c/1485932496a1b025235af8aa1e21988d6b7ccd54
    Patch
  • git.kernel.org https://git.kernel.org/stable/c/665cfd1083866f87301bbd232cb8ba48dcf4acce
    Patch
  • git.kernel.org https://git.kernel.org/stable/c/6bcb8a5b70b80143db9bf12dfa7d53636f824d53
    Patch
  • git.kernel.org https://git.kernel.org/stable/c/92340e6c5122d823ad064984ef7513eba9204048
    Patch
  • git.kernel.org https://git.kernel.org/stable/c/a20fcaa230f7472456d12cf761ed13938e320ac3
    Patch
  • git.kernel.org https://git.kernel.org/stable/c/c981c32c38af80737a2fedc16e270546d139ccdd
    Patch
  • git.kernel.org https://git.kernel.org/stable/c/ce9ff21ea89d191e477a02ad7eabf4f996b80a69
    Patch
  • git.kernel.org https://git.kernel.org/stable/c/d19a8650fd3d7aed8d1af1d9a77f979a8430eba1
    Patch
  • git.kernel.org https://git.kernel.org/stable/c/f21636f24b6786c8b13f1af4319fa75ffcf17f38
    Patch