CVE-2025-21734

HIGH EPSS 8.6%
Published Feb 27, 20251y ago · Modified Jun 17, 20261w ago
7.8 CVSS 3.1
High
Find Similar
Published Feb 27, 2025 1y ago
Last Modified Jun 17, 2026 1w ago

Description

In the Linux kernel, the following vulnerability has been resolved: misc: fastrpc: Fix copy buffer page size For non-registered buffer, fastrpc driver copies the buffer and pass it to the remote subsystem. There is a problem with current implementation of page size calculation which is not considering the offset in the calculation. This might lead to passing of improper and out-of-bounds page size which could result in memory issue. Calculate page start and page end using the offset adjusted address instead of absolute address.

CVSS Details

Base Score
7.8
Exploitability
1.8
Impact
5.9
Vector string
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Attack Vector Local
Attack Complexity Low
Privileges Required Low
User Interaction None
Scope Unchanged
Confidentiality High
Integrity High
Availability High

Threat Intelligence

EPSS Exploit Probability
8.6% percentile
Exploit & Patch Status
No Known Exploit
Patch Available

Weaknesses 1

CWE-787 Out-of-bounds Write Memory Safety

Affected Products 4

VendorProductVersionRange
linuxlinux_kernel*≥5.2  –  <6.1.129
linuxlinux_kernel*≥6.2  –  <6.6.78
linuxlinux_kernel*≥6.7  –  <6.12.14
linuxlinux_kernel*≥6.13  –  <6.13.3

References 6

  • git.kernel.org https://git.kernel.org/stable/c/24a79c6bc8de763f7c50f4f84f8b0c183bc25a51
    Patch
  • git.kernel.org https://git.kernel.org/stable/c/c0464bad0e85fcd5d47e4297d1e410097c979e55
    Patch
  • git.kernel.org https://git.kernel.org/stable/c/c3f7161123fcbdc64e90119ccce292d8b66281c4
    Patch
  • git.kernel.org https://git.kernel.org/stable/c/c56ba3ea8e3c9a69a992aad18f7a65e43e51d623
    Patch
  • git.kernel.org https://git.kernel.org/stable/c/e966eae72762ecfdbdb82627e2cda48845b9dd66
    Patch
  • lists.debian.org https://lists.debian.org/debian-lts-announce/2025/03/msg00028.html

Remediation

  • git.kernel.org https://git.kernel.org/stable/c/24a79c6bc8de763f7c50f4f84f8b0c183bc25a51
    Patch
  • git.kernel.org https://git.kernel.org/stable/c/c0464bad0e85fcd5d47e4297d1e410097c979e55
    Patch
  • git.kernel.org https://git.kernel.org/stable/c/c3f7161123fcbdc64e90119ccce292d8b66281c4
    Patch
  • git.kernel.org https://git.kernel.org/stable/c/c56ba3ea8e3c9a69a992aad18f7a65e43e51d623
    Patch
  • git.kernel.org https://git.kernel.org/stable/c/e966eae72762ecfdbdb82627e2cda48845b9dd66
    Patch