cbcvebase.
CVE-2025-21683
published 2025-01-31

CVE-2025-21683: In the Linux kernel, the following vulnerability has been resolved: bpf: Fix bpf_sk_select_reuseport() memory leak As pointed out in the original comment…

PriorityP419medium5.5CVSS 3.1
AVLACLPRLUINSUCNINAH
EPSS
0.22%
12.5th percentile
In the Linux kernel, the following vulnerability has been resolved: bpf: Fix bpf_sk_select_reuseport() memory leak As pointed out in the original comment, lookup in sockmap can return a TCP ESTABLISHED socket. Such TCP socket may have had SO_ATTACH_REUSEPORT_EBPF set before it was ESTABLISHED. In other words, a non-NULL sk_reuseport_cb does not imply a non-refcounted socket. Drop sk's reference in both error paths. unreferenced object 0xffff888101911800 (size 2048): comm "test_progs", pid 44109, jiffies 4297131437 hex dump (first 32 bytes): 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ................ 80 00 01 00 00 00 00 00 00 00 00 00 00 00 00 00 ................ backtrace (crc 9336483b): __kmalloc_noprof+0x3bf/0x560 __reuseport_alloc+0x1d/0x40 reuseport_alloc+0xca/0x150 reuseport_attach_prog+0x87/0x140 sk_reuseport_attach_bpf+0xc8/0x100 sk_setsockopt+0x1181/0x1990 do_sock_setsockopt+0x12b/0x160 __sys_setsockopt+0x7b/0xc0 __x64_sys_setsockopt+0x1b/0x30 do_syscall_64+0x93/0x180 entry_SYSCALL_64_after_hwframe+0x76/0x7e

Affected

24 ranges
VendorProductVersion rangeFixed in
debianlinux< linux 6.1.128-1 (bookworm)linux 6.1.128-1 (bookworm)
debianlinux-6.1< linux 6.1.128-1 (bookworm)linux 6.1.128-1 (bookworm)
fig2dev_projectfig2dev>= 0 < 1:3.2.6a-6ubuntu1.1+esm11:3.2.6a-6ubuntu1.1+esm1
fig2dev_projectfig2dev>= 0 < 1:3.2.7a-7ubuntu0.1+esm11:3.2.7a-7ubuntu0.1+esm1
fig2dev_projectfig2dev>= 0 < 1:3.2.8b-1ubuntu0.1~esm11:3.2.8b-1ubuntu0.1~esm1
fig2dev_projectfig2dev>= 0 < 1:3.2.9-3ubuntu0.1~esm11:3.2.9-3ubuntu0.1~esm1
linuxlinux
linuxlinux>= 64d85290d79c0677edb5a8ee2295b36c022fa5df < bb36838dac7bb334a3f3d7eb29875593ec9473fcbb36838dac7bb334a3f3d7eb29875593ec9473fc
linuxlinux>= 64d85290d79c0677edb5a8ee2295b36c022fa5df < 0ab52a8ca6e156a64c51b5e7456cac9a0ebfd9bf0ab52a8ca6e156a64c51b5e7456cac9a0ebfd9bf
linuxlinux>= 64d85290d79c0677edb5a8ee2295b36c022fa5df < d0a3b3d1176d39218b8edb2a2d03164942ab9ccdd0a3b3d1176d39218b8edb2a2d03164942ab9ccd
linuxlinux>= 64d85290d79c0677edb5a8ee2295b36c022fa5df < b02e70be498b138e9c21701c2f33f4018ca7cd5eb02e70be498b138e9c21701c2f33f4018ca7cd5e
linuxlinux>= 64d85290d79c0677edb5a8ee2295b36c022fa5df < cccd51dd22574216e64e5d205489e634f86999f3cccd51dd22574216e64e5d205489e634f86999f3
linuxlinux>= 64d85290d79c0677edb5a8ee2295b36c022fa5df < b3af60928ab9129befa65e6df0310d27300942bfb3af60928ab9129befa65e6df0310d27300942bf
linuxlinux_kernel
linuxlinux_kernel>= 0 < 5.10.234-15.10.234-1
linuxlinux_kernel>= 0 < 6.1.128-16.1.128-1
linuxlinux_kernel>= 0 < 6.12.11-16.12.11-1
linuxlinux_kernel>= 0 < 6.12.11-16.12.11-1
linuxlinux_kernel>= 0 < 5.15.0-135.1465.15.0-135.146
linuxlinux_kernel>= 0 < 6.8.0-62.656.8.0-62.65
linuxlinux_kernel>= 5.16 < 6.1.1276.1.127
linuxlinux_kernel>= 5.8 < 5.15.1775.15.177
linuxlinux_kernel>= 6.2 < 6.6.746.6.74
linuxlinux_kernel>= 6.7 < 6.12.116.12.11

CVSS provenance

nvdv3.15.5MEDIUMCVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
osv7.8HIGH
vendor_ubuntu7.8HIGH
vendor_debian5.5MEDIUM
vendor_redhat5.5MEDIUM
Stop checking back — get the weekly exploitation signal.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.