cbcvebase.
CVE-2025-21761
published 2025-02-27

CVE-2025-21761: In the Linux kernel, the following vulnerability has been resolved: openvswitch: use RCU protection in ovs_vport_cmd_fill_info() ovs_vport_cmd_fill_info() can…

PriorityP336high7.8CVSS 3.1
AVLACLPRLUINSUCHIHAH
EPSS
0.24%
15.7th percentile
In the Linux kernel, the following vulnerability has been resolved: openvswitch: use RCU protection in ovs_vport_cmd_fill_info() ovs_vport_cmd_fill_info() can be called without RTNL or RCU. Use RCU protection and dev_net_rcu() to avoid potential UAF.

Affected

31 ranges· showing 25
VendorProductVersion rangeFixed in
debianlinux< linux 6.1.129-1 (bookworm)linux 6.1.129-1 (bookworm)
debianlinux-6.1< linux 6.1.129-1 (bookworm)linux 6.1.129-1 (bookworm)
linuxlinux
linuxlinux>= 9354d452034273a50a4fd703bea31e5d6b1fc20b < e85a25d1a9985645e796039e843d1de581d2de1ee85a25d1a9985645e796039e843d1de581d2de1e
linuxlinux>= 9354d452034273a50a4fd703bea31e5d6b1fc20b < a8816b3f1f151373fd30f1996f00480126c8bb11a8816b3f1f151373fd30f1996f00480126c8bb11
linuxlinux>= 9354d452034273a50a4fd703bea31e5d6b1fc20b < a884f57600e463f69d7b279c4598b865260b62a1a884f57600e463f69d7b279c4598b865260b62a1
linuxlinux>= 9354d452034273a50a4fd703bea31e5d6b1fc20b < 7e01abc34e87abd091e619161a20f54ed4e3e2da7e01abc34e87abd091e619161a20f54ed4e3e2da
linuxlinux>= 9354d452034273a50a4fd703bea31e5d6b1fc20b < 8ec57509c36c8b9a23e50b7858dda0c520a2d0748ec57509c36c8b9a23e50b7858dda0c520a2d074
linuxlinux>= 9354d452034273a50a4fd703bea31e5d6b1fc20b < a849a10de5e04d798f7f286a2f1ca174719a617aa849a10de5e04d798f7f286a2f1ca174719a617a
linuxlinux>= 9354d452034273a50a4fd703bea31e5d6b1fc20b < 5828937742af74666192835d657095d95c53dbd05828937742af74666192835d657095d95c53dbd0
linuxlinux>= 9354d452034273a50a4fd703bea31e5d6b1fc20b < 90b2f49a502fa71090d9f4fe29a2f51fe5dff76d90b2f49a502fa71090d9f4fe29a2f51fe5dff76d
linuxlinux_kernel
linuxlinux_kernel>= 0 < 5.10.237-15.10.237-1
linuxlinux_kernel>= 0 < 6.1.129-16.1.129-1
linuxlinux_kernel>= 0 < 6.12.16-16.12.16-1
linuxlinux_kernel>= 0 < 6.12.16-16.12.16-1
linuxlinux_kernel>= 0 < 5.4.0-216.2365.4.0-216.236
linuxlinux_kernel>= 0 < 5.15.0-140.1505.15.0-140.150
linuxlinux_kernel>= 0 < 6.8.0-78.786.8.0-78.78
linuxlinux_kernel>= 0 < 4.15.0-245.2574.15.0-245.257
linuxlinux_kernel>= 4.15 < 5.4.2915.4.291
linuxlinux_kernel>= 5.11 < 5.15.1795.15.179
linuxlinux_kernel>= 5.16 < 6.1.1296.1.129
linuxlinux_kernel>= 5.5 < 5.10.2355.10.235
linuxlinux_kernel>= 6.13 < 6.13.46.13.4

CVSS provenance

nvdv3.17.8HIGHCVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
osv8.8HIGH
vendor_ubuntu8.8HIGH
vendor_debian7.8HIGH
vendor_msrc7.8HIGH
vendor_redhat7.8HIGH
Stop checking back — get the weekly exploitation signal.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.