cbcvebase.
CVE-2025-21734
published 2025-02-27

CVE-2025-21734: In the Linux kernel, the following vulnerability has been resolved: misc: fastrpc: Fix copy buffer page size For non-registered buffer, fastrpc driver copies…

PriorityP339high7.8CVSS 3.1
AVLACLPRLUINSUCHIHAH
EPSS
0.20%
10.5th percentile
In the Linux kernel, the following vulnerability has been resolved: misc: fastrpc: Fix copy buffer page size For non-registered buffer, fastrpc driver copies the buffer and pass it to the remote subsystem. There is a problem with current implementation of page size calculation which is not considering the offset in the calculation. This might lead to passing of improper and out-of-bounds page size which could result in memory issue. Calculate page start and page end using the offset adjusted address instead of absolute address.

Affected

19 ranges
VendorProductVersion rangeFixed in
debianlinux< linux 6.1.129-1 (bookworm)linux 6.1.129-1 (bookworm)
debianlinux-6.1< linux 6.1.129-1 (bookworm)linux 6.1.129-1 (bookworm)
linuxlinux
linuxlinux>= 02b45b47fbe84e23699bb6bdc74d4c2780e282b4 < c56ba3ea8e3c9a69a992aad18f7a65e43e51d623c56ba3ea8e3c9a69a992aad18f7a65e43e51d623
linuxlinux>= 02b45b47fbe84e23699bb6bdc74d4c2780e282b4 < c0464bad0e85fcd5d47e4297d1e410097c979e55c0464bad0e85fcd5d47e4297d1e410097c979e55
linuxlinux>= 02b45b47fbe84e23699bb6bdc74d4c2780e282b4 < 24a79c6bc8de763f7c50f4f84f8b0c183bc25a5124a79c6bc8de763f7c50f4f84f8b0c183bc25a51
linuxlinux>= 02b45b47fbe84e23699bb6bdc74d4c2780e282b4 < c3f7161123fcbdc64e90119ccce292d8b66281c4c3f7161123fcbdc64e90119ccce292d8b66281c4
linuxlinux>= 02b45b47fbe84e23699bb6bdc74d4c2780e282b4 < e966eae72762ecfdbdb82627e2cda48845b9dd66e966eae72762ecfdbdb82627e2cda48845b9dd66
linuxlinux_kernel>= 0 < 6.1.129-16.1.129-1
linuxlinux_kernel>= 0 < 6.12.15-16.12.15-1
linuxlinux_kernel>= 0 < 6.12.15-16.12.15-1
linuxlinux_kernel>= 0 < 6.8.0-64.676.8.0-64.67
linuxlinux_kernel>= 5.2 < 6.1.1296.1.129
linuxlinux_kernel>= 6.13 < 6.13.36.13.3
linuxlinux_kernel>= 6.2 < 6.6.786.6.78
linuxlinux_kernel>= 6.7 < 6.12.146.12.14
msrccbl2_kernel_5.15.186.1-1_on_cbl_mariner_2.0
msrccbl2_kernel_5.15.200.1-1_on_cbl_mariner_2.0
msrccbl2_kernel_5.15.202.1-1_on_cbl_mariner_2.0

CVSS provenance

nvdv3.17.8HIGHCVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
osv7.8HIGH
vendor_debian7.8HIGH
vendor_msrc7.8HIGH
vendor_redhat7.8HIGH
vendor_ubuntu7.8HIGH
Stop checking back — get the weekly exploitation signal.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.