cbcvebase.
CVE-2025-21691
published 2025-02-10

CVE-2025-21691: In the Linux kernel, the following vulnerability has been resolved: cachestat: fix page cache statistics permission checking When the 'cachestat()' system call…

PriorityP420medium5.5CVSS 3.1
AVLACLPRLUINSUCNINAH
EPSS
0.20%
10.1th percentile
In the Linux kernel, the following vulnerability has been resolved: cachestat: fix page cache statistics permission checking When the 'cachestat()' system call was added in commit cf264e1329fb ("cachestat: implement cachestat syscall"), it was meant to be a much more convenient (and performant) version of mincore() that didn't need mapping things into the user virtual address space in order to work. But it ended up missing the "check for writability or ownership" fix for mincore(), done in commit 134fca9063ad ("mm/mincore.c: make mincore() more conservative"). This just adds equivalent logic to 'cachestat()', modified for the file context (rather than vma).

Affected

12 ranges
VendorProductVersion rangeFixed in
debianlinux< linux 6.12.12-1 (forky)linux 6.12.12-1 (forky)
linuxlinux
linuxlinux>= cf264e1329fb0307e044f7675849f9f38b44c11a < 7d6405c13b0d8a8367cd8df63f118b619a3f0dd27d6405c13b0d8a8367cd8df63f118b619a3f0dd2
linuxlinux>= cf264e1329fb0307e044f7675849f9f38b44c11a < 780ab8329672464984cf1344bd5c3993af0226c7780ab8329672464984cf1344bd5c3993af0226c7
linuxlinux>= cf264e1329fb0307e044f7675849f9f38b44c11a < 97153a05077f618f7471f50a78158602badccb3097153a05077f618f7471f50a78158602badccb30
linuxlinux>= cf264e1329fb0307e044f7675849f9f38b44c11a < 5f537664e705b0bf8b7e329861f20128534f6a835f537664e705b0bf8b7e329861f20128534f6a83
linuxlinux_kernel
linuxlinux_kernel>= 0 < 6.12.12-16.12.12-1
linuxlinux_kernel>= 0 < 6.12.12-16.12.12-1
linuxlinux_kernel>= 0 < 6.8.0-62.656.8.0-62.65
linuxlinux_kernel>= 6.5 < 6.6.756.6.75
linuxlinux_kernel>= 6.7 < 6.12.126.12.12

CVSS provenance

nvdv3.15.5MEDIUMCVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
osv5.9MEDIUM
vendor_ubuntu5.9MEDIUM
vendor_debian5.5LOW
vendor_redhat5.5MEDIUM
Stop checking back — get the weekly exploitation signal.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.