cbcvebase.
CVE-2025-21794
published 2025-02-27

CVE-2025-21794: In the Linux kernel, the following vulnerability has been resolved: HID: hid-thrustmaster: fix stack-out-of-bounds read in usb_check_int_endpoints() Syzbot[1]…

PriorityP430high7.1CVSS 3.1
AVLACLPRLUINSUCHINAH
EPSS
0.23%
13.8th percentile
In the Linux kernel, the following vulnerability has been resolved: HID: hid-thrustmaster: fix stack-out-of-bounds read in usb_check_int_endpoints() Syzbot[1] has detected a stack-out-of-bounds read of the ep_addr array from hid-thrustmaster driver. This array is passed to usb_check_int_endpoints function from usb.c core driver, which executes a for loop that iterates over the elements of the passed array. Not finding a null element at the end of the array, it tries to read the next, non-existent element, crashing the kernel. To fix this, a 0 element was added at the end of the array to break the for loop. [1] https://syzkaller.appspot.com/bug?extid=9c9179ac46169c56c1ad

Affected

19 ranges
VendorProductVersion rangeFixed in
debianlinux< linux 6.1.129-1 (bookworm)linux 6.1.129-1 (bookworm)
debianlinux-6.1< linux 6.1.129-1 (bookworm)linux 6.1.129-1 (bookworm)
linuxlinux>= 220883fba32549a34f0734e4859d07f4dcd56992 < 436f48c864186e9413d1b7c6e91767cc9e1a65b8436f48c864186e9413d1b7c6e91767cc9e1a65b8
linuxlinux>= 50420d7c79c37a3efe4010ff9b1bb14bc61ebccf < 0b43d98ff29be3144e86294486b1373b5df74c0e0b43d98ff29be3144e86294486b1373b5df74c0e
linuxlinux>= 6.12.13 < 6.12.166.12.16
linuxlinux>= 6.13.2 < 6.13.46.13.4
linuxlinux>= 6.6.76 < 6.6.796.6.79
linuxlinux>= 816e84602900f7f951458d743fa12769635ebfd5 < 73e36a699b9f46322ffb81f072a24e64f728dba773e36a699b9f46322ffb81f072a24e64f728dba7
linuxlinux>= ae730deded66150204c494282969bfa98dc3ae67 < f3ce05283f6cb6e19c220f5382def43dc5bd56b9f3ce05283f6cb6e19c220f5382def43dc5bd56b9
linuxlinux>= e5bcae4212a6a4b4204f46a1b8bcba08909d2007 < cdd9a1ea23ff1a272547217100663e8de4eada40cdd9a1ea23ff1a272547217100663e8de4eada40
linuxlinux_kernel
linuxlinux_kernel>= 0 < 6.1.129-16.1.129-1
linuxlinux_kernel>= 0 < 6.12.16-16.12.16-1
linuxlinux_kernel>= 0 < 6.12.16-16.12.16-1
linuxlinux_kernel>= 6.12.13 < 6.12.166.12.16
linuxlinux_kernel>= 6.13.2 < 6.13.46.13.4
linuxlinux_kernel>= 6.6.76 < 6.6.796.6.79
msrcazl3_kernel_6.6.78.1-3_on_azure_linux_3.0
msrcazl3_kernel_6.6.79.1-1_on_azure_linux_3.0

CVSS provenance

nvdv3.17.1HIGHCVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:H
osv7.1HIGH
vendor_debian7.1HIGH
vendor_msrc7.1HIGH
vendor_redhat7.1HIGH
Stop checking back — get the weekly exploitation signal.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.