cbcvebase.
CVE-2025-21811
published 2025-02-27

CVE-2025-21811: In the Linux kernel, the following vulnerability has been resolved: nilfs2: protect access to buffers with no active references…

PriorityP339high7.8CVSS 3.1
AVLACLPRLUINSUCHIHAH
EPSS
0.23%
13.4th percentile
In the Linux kernel, the following vulnerability has been resolved: nilfs2: protect access to buffers with no active references nilfs_lookup_dirty_data_buffers(), which iterates through the buffers attached to dirty data folios/pages, accesses the attached buffers without locking the folios/pages. For data cache, nilfs_clear_folio_dirty() may be called asynchronously when the file system degenerates to read only, so nilfs_lookup_dirty_data_buffers() still has the potential to cause use after free issues when buffers lose the protection of their dirty state midway due to this asynchronous clearing and are unintentionally freed by try_to_free_buffers(). Eliminate this race issue by adjusting the lock section in this function.

Affected

28 ranges· showing 25
VendorProductVersion rangeFixed in
debianlinux< linux 6.1.129-1 (bookworm)linux 6.1.129-1 (bookworm)
debianlinux-6.1< linux 6.1.129-1 (bookworm)linux 6.1.129-1 (bookworm)
linuxlinux
linuxlinux>= 8c26c4e2694a163d525976e804d81cd955bbb40c < e1fc4a90a90ea8514246c45435662531975937d9e1fc4a90a90ea8514246c45435662531975937d9
linuxlinux>= 8c26c4e2694a163d525976e804d81cd955bbb40c < 72cf688d0ce7e642b12ddc9b2a42524737ec1b4a72cf688d0ce7e642b12ddc9b2a42524737ec1b4a
linuxlinux>= 8c26c4e2694a163d525976e804d81cd955bbb40c < d8ff250e085a4c4cdda4ad1cdd234ed110393143d8ff250e085a4c4cdda4ad1cdd234ed110393143
linuxlinux>= 8c26c4e2694a163d525976e804d81cd955bbb40c < 58c27fa7a610b6e8d44e6220e7dbddfbaccaf43958c27fa7a610b6e8d44e6220e7dbddfbaccaf439
linuxlinux>= 8c26c4e2694a163d525976e804d81cd955bbb40c < 8e1b9201c9a24638cf09c6e1c9f224157328010b8e1b9201c9a24638cf09c6e1c9f224157328010b
linuxlinux>= 8c26c4e2694a163d525976e804d81cd955bbb40c < 4b08d23d7d1917bef4fbee8ad81372f49b0066564b08d23d7d1917bef4fbee8ad81372f49b006656
linuxlinux>= 8c26c4e2694a163d525976e804d81cd955bbb40c < c437dfac9f7a5a46ac2a5e6d6acd3059e9f68188c437dfac9f7a5a46ac2a5e6d6acd3059e9f68188
linuxlinux>= 8c26c4e2694a163d525976e804d81cd955bbb40c < 367a9bffabe08c04f6d725032cce3d891b2b9e1a367a9bffabe08c04f6d725032cce3d891b2b9e1a
linuxlinux_kernel>= 0 < 5.10.237-15.10.237-1
linuxlinux_kernel>= 0 < 6.1.129-16.1.129-1
linuxlinux_kernel>= 0 < 6.12.13-16.12.13-1
linuxlinux_kernel>= 0 < 6.12.13-16.12.13-1
linuxlinux_kernel>= 0 < 5.4.0-216.2365.4.0-216.236
linuxlinux_kernel>= 0 < 5.15.0-140.1505.15.0-140.150
linuxlinux_kernel>= 0 < 6.8.0-64.676.8.0-64.67
linuxlinux_kernel>= 0 < 4.4.0-276.3104.4.0-276.310
linuxlinux_kernel>= 0 < 4.15.0-245.2574.15.0-245.257
linuxlinux_kernel>= 3.10 < 5.4.2915.4.291
linuxlinux_kernel>= 5.11 < 5.15.1795.15.179
linuxlinux_kernel>= 5.16 < 6.1.1296.1.129
linuxlinux_kernel>= 5.5 < 5.10.2355.10.235
linuxlinux_kernel>= 6.13 < 6.13.26.13.2

CVSS provenance

nvdv3.17.8HIGHCVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
osv8.8HIGH
vendor_ubuntu8.8HIGH
vendor_debian7.8HIGH
vendor_msrc7.8HIGH
vendor_redhat7.8HIGH
Stop checking back — get the weekly exploitation signal.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.