cbcvebase.
CVE-2025-21791
published 2025-02-27

CVE-2025-21791: In the Linux kernel, the following vulnerability has been resolved: vrf: use RCU protection in l3mdev_l3_out() l3mdev_l3_out() can be called without RCU being…

PriorityP336high7.8CVSS 3.1
AVLACLPRLUINSUCHIHAH
EPSS
0.26%
18.1th percentile
In the Linux kernel, the following vulnerability has been resolved: vrf: use RCU protection in l3mdev_l3_out() l3mdev_l3_out() can be called without RCU being held: raw_sendmsg() ip_push_pending_frames() ip_send_skb() ip_local_out() __ip_local_out() l3mdev_ip_out() Add rcu_read_lock() / rcu_read_unlock() pair to avoid a potential UAF.

Affected

28 ranges· showing 25
VendorProductVersion rangeFixed in
debianlinux< linux 6.1.129-1 (bookworm)linux 6.1.129-1 (bookworm)
debianlinux-6.1< linux 6.1.129-1 (bookworm)linux 6.1.129-1 (bookworm)
linuxlinux
linuxlinux>= a8e3e1a9f02094145580ea7920c6a1d9aabd5539 < 6ccaa5797f5362a2aad6baa6ddaf4715ac2dd51e6ccaa5797f5362a2aad6baa6ddaf4715ac2dd51e
linuxlinux>= a8e3e1a9f02094145580ea7920c6a1d9aabd5539 < 20a3489b396764cc9376e32a9172bee26a89dc3b20a3489b396764cc9376e32a9172bee26a89dc3b
linuxlinux>= a8e3e1a9f02094145580ea7920c6a1d9aabd5539 < 5bb4228c32261d06e4fbece37ec3828bcc005b6b5bb4228c32261d06e4fbece37ec3828bcc005b6b
linuxlinux>= a8e3e1a9f02094145580ea7920c6a1d9aabd5539 < c7574740be8ce68a57d0aece24987b9be2114c3cc7574740be8ce68a57d0aece24987b9be2114c3c
linuxlinux>= a8e3e1a9f02094145580ea7920c6a1d9aabd5539 < c40cb5c03e37552d6eff963187109e2c3f78ef6fc40cb5c03e37552d6eff963187109e2c3f78ef6f
linuxlinux>= a8e3e1a9f02094145580ea7920c6a1d9aabd5539 < 022cac1c693add610ae76ede03adf4d9d5a2cf21022cac1c693add610ae76ede03adf4d9d5a2cf21
linuxlinux>= a8e3e1a9f02094145580ea7920c6a1d9aabd5539 < 7b81425b517accefd46bee854d94954f5c57e0197b81425b517accefd46bee854d94954f5c57e019
linuxlinux>= a8e3e1a9f02094145580ea7920c6a1d9aabd5539 < 6d0ce46a93135d96b7fa075a94a88fe0da8e87736d0ce46a93135d96b7fa075a94a88fe0da8e8773
linuxlinux_kernel
linuxlinux_kernel>= 0 < 5.10.237-15.10.237-1
linuxlinux_kernel>= 0 < 6.1.129-16.1.129-1
linuxlinux_kernel>= 0 < 6.12.16-16.12.16-1
linuxlinux_kernel>= 0 < 6.12.16-16.12.16-1
linuxlinux_kernel>= 0 < 5.4.0-216.2365.4.0-216.236
linuxlinux_kernel>= 0 < 5.15.0-140.1505.15.0-140.150
linuxlinux_kernel>= 0 < 6.8.0-78.786.8.0-78.78
linuxlinux_kernel>= 0 < 4.15.0-245.2574.15.0-245.257
linuxlinux_kernel>= 4.9 < 6.1.1296.1.129
linuxlinux_kernel>= 6.13 < 6.13.46.13.4
linuxlinux_kernel>= 6.2 < 6.6.796.6.79
linuxlinux_kernel>= 6.7 < 6.12.166.12.16
msrcazl3_kernel_6.6.78.1-3_on_azure_linux_3.0

CVSS provenance

nvdv3.17.8HIGHCVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
osv8.8HIGH
vendor_ubuntu8.8HIGH
vendor_debian7.8HIGH
vendor_msrc7.8HIGH
vendor_redhat7.8HIGH
Stop checking back — get the weekly exploitation signal.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.