cbcvebase.
CVE-2025-21826
published 2025-03-06

CVE-2025-21826: In the Linux kernel, the following vulnerability has been resolved: netfilter: nf_tables: reject mismatching sum of field_len with set key length The field…

PriorityP421medium5.5CVSS 3.1
AVLACLPRLUINSUCNINAH
EPSS
0.20%
9.6th percentile
In the Linux kernel, the following vulnerability has been resolved: netfilter: nf_tables: reject mismatching sum of field_len with set key length The field length description provides the length of each separated key field in the concatenation, each field gets rounded up to 32-bits to calculate the pipapo rule width from pipapo_init(). The set key length provides the total size of the key aligned to 32-bits. Register-based arithmetics still allows for combining mismatching set key length and field length description, eg. set key length 10 and field description [ 5, 4 ] leading to pipapo width of 12.

Affected

28 ranges· showing 25
VendorProductVersion rangeFixed in
debianlinux< linux 6.1.129-1 (bookworm)linux 6.1.129-1 (bookworm)
debianlinux-6.1< linux 6.1.129-1 (bookworm)linux 6.1.129-1 (bookworm)
linuxlinux
linuxlinux
linuxlinux>= 2d4c0798a1ef8db15b3277697ac2def4eda42312 < 6b467c8feac759f4c5c86d708beca2aa2b29584f6b467c8feac759f4c5c86d708beca2aa2b29584f
linuxlinux>= 3ce67e3793f48c1b9635beb9bb71116ca1e51b58 < 49b7182b97bafbd5645414aff054b4a65d05823d49b7182b97bafbd5645414aff054b4a65d05823d
linuxlinux>= 3ce67e3793f48c1b9635beb9bb71116ca1e51b58 < ab50d0eff4a939d20c37721fd9766347efcdb6f6ab50d0eff4a939d20c37721fd9766347efcdb6f6
linuxlinux>= 3ce67e3793f48c1b9635beb9bb71116ca1e51b58 < 1b9335a8000fb70742f7db10af314104b6ace2201b9335a8000fb70742f7db10af314104b6ace220
linuxlinux>= 5.10.209 < 5.10.2355.10.235
linuxlinux>= 5.15.148 < 5.15.1795.15.179
linuxlinux>= 6.1.75 < 6.1.1296.1.129
linuxlinux>= 6.6.14 < 6.6.766.6.76
linuxlinux>= 6.7.2 < 6.86.8
linuxlinux>= 77be8c495a3f841e88b46508cc20d3d7d3289da3 < 5083a7ae45003456c253e981b30a43f71230b4a35083a7ae45003456c253e981b30a43f71230b4a3
linuxlinux>= 9cb084df01e198119de477ac691d682fb01e80f3 < 2ac254343d3cf228ae0738b2615fedf85d0007522ac254343d3cf228ae0738b2615fedf85d000752
linuxlinux>= dc45bb00e66a33de1abb29e3d587880e1d4d9a7e < 82e491e085719068179ff6a5466b7387cc4bbf3282e491e085719068179ff6a5466b7387cc4bbf32
linuxlinux_kernel>= 0 < 5.10.237-15.10.237-1
linuxlinux_kernel>= 0 < 6.1.129-16.1.129-1
linuxlinux_kernel>= 0 < 6.12.13-16.12.13-1
linuxlinux_kernel>= 0 < 6.12.13-16.12.13-1
linuxlinux_kernel>= 0 < 5.15.0-140.1505.15.0-140.150
linuxlinux_kernel>= 0 < 6.8.0-64.676.8.0-64.67
linuxlinux_kernel>= 5.10.209 < 5.10.2355.10.235
linuxlinux_kernel>= 5.15.148 < 5.15.1795.15.179
linuxlinux_kernel>= 6.1.75 < 6.1.1296.1.129

CVSS provenance

nvdv3.15.5MEDIUMCVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
osv8.8HIGH
vendor_ubuntu8.8HIGH
vendor_debian5.5MEDIUM
vendor_redhat5.5MEDIUM
Stop checking back — get the weekly exploitation signal.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.