CVE-2025-21935

MEDIUM EPSS 8.3%
Published Apr 1, 20251y ago · Modified Jun 17, 20261w ago
5.5 CVSS 3.1
Medium
Find Similar
Published Apr 1, 2025 1y ago
Last Modified Jun 17, 2026 1w ago

Description

In the Linux kernel, the following vulnerability has been resolved: rapidio: add check for rio_add_net() in rio_scan_alloc_net() The return value of rio_add_net() should be checked. If it fails, put_device() should be called to free the memory and give up the reference initialized in rio_add_net().

CVSS Details

Base Score
5.5
Exploitability
1.8
Impact
3.6
Vector string
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
Attack Vector Local
Attack Complexity Low
Privileges Required Low
User Interaction None
Scope Unchanged
Confidentiality None
Integrity None
Availability High

Threat Intelligence

EPSS Exploit Probability
8.3% percentile
Exploit & Patch Status
No Known Exploit
Patch Available

Affected Products 12

VendorProductVersionRange
linuxlinux_kernel*≥4.6  –  <5.4.291
linuxlinux_kernel*≥5.5  –  <5.10.235
linuxlinux_kernel*≥5.11  –  <5.15.179
linuxlinux_kernel*≥5.16  –  <6.1.131
linuxlinux_kernel*≥6.2  –  <6.6.83
linuxlinux_kernel*≥6.7  –  <6.12.19
linuxlinux_kernel*≥6.13  –  <6.13.7
linuxlinux_kernel6.14any
linuxlinux_kernel6.14any
linuxlinux_kernel6.14any
linuxlinux_kernel6.14any
linuxlinux_kernel6.14any

References 10

  • git.kernel.org https://git.kernel.org/stable/c/181d4daaefb3bceeb2f2635ba9f3781eeda9e550
    Patch
  • git.kernel.org https://git.kernel.org/stable/c/4f3509cfcc02e9d757f2714bb7dbbeec35de6fa7
    Patch
  • git.kernel.org https://git.kernel.org/stable/c/6d22953c4a183d0b7fdf34d68c5debd16da6edc5
    Patch
  • git.kernel.org https://git.kernel.org/stable/c/a0d069ccc475abaaa79c6368ee27fc0b5912bea8
    Patch
  • git.kernel.org https://git.kernel.org/stable/c/ad82be4298a89a9ae46f07128bdf3d8614bce745
    Patch
  • git.kernel.org https://git.kernel.org/stable/c/c332f3e2df0fcae5a45fd55cc18902fb1e4825ca
    Patch
  • git.kernel.org https://git.kernel.org/stable/c/e6411c3b9512dba09af7d014d474516828c89706
    Patch
  • git.kernel.org https://git.kernel.org/stable/c/e842f9a1edf306bf36fe2a4d847a0b0d458770de
    Patch
  • lists.debian.org https://lists.debian.org/debian-lts-announce/2025/05/msg00030.html
  • lists.debian.org https://lists.debian.org/debian-lts-announce/2025/05/msg00045.html

Remediation

  • git.kernel.org https://git.kernel.org/stable/c/181d4daaefb3bceeb2f2635ba9f3781eeda9e550
    Patch
  • git.kernel.org https://git.kernel.org/stable/c/4f3509cfcc02e9d757f2714bb7dbbeec35de6fa7
    Patch
  • git.kernel.org https://git.kernel.org/stable/c/6d22953c4a183d0b7fdf34d68c5debd16da6edc5
    Patch
  • git.kernel.org https://git.kernel.org/stable/c/a0d069ccc475abaaa79c6368ee27fc0b5912bea8
    Patch
  • git.kernel.org https://git.kernel.org/stable/c/ad82be4298a89a9ae46f07128bdf3d8614bce745
    Patch
  • git.kernel.org https://git.kernel.org/stable/c/c332f3e2df0fcae5a45fd55cc18902fb1e4825ca
    Patch
  • git.kernel.org https://git.kernel.org/stable/c/e6411c3b9512dba09af7d014d474516828c89706
    Patch
  • git.kernel.org https://git.kernel.org/stable/c/e842f9a1edf306bf36fe2a4d847a0b0d458770de
    Patch