cbcvebase.
CVE-2025-21898
published 2025-04-01

CVE-2025-21898: In the Linux kernel, the following vulnerability has been resolved: ftrace: Avoid potential division by zero in function_stat_show() Check whether denominator…

PriorityP419medium5.5CVSS 3.1
AVLACLPRLUINSUCNINAH
EPSS
0.21%
10.7th percentile
In the Linux kernel, the following vulnerability has been resolved: ftrace: Avoid potential division by zero in function_stat_show() Check whether denominator expression x * (x - 1) * 1000 mod {2^32, 2^64} produce zero and skip stddev computation in that case. For now don't care about rec->counter * rec->counter overflow because rec->time * rec->time overflow will likely happen earlier.

Affected

44 ranges· showing 25
VendorProductVersion rangeFixed in
debianlinux< linux 6.1.133-1 (bookworm)linux 6.1.133-1 (bookworm)
debianlinux-6.1< linux 6.1.133-1 (bookworm)linux 6.1.133-1 (bookworm)
linuxlinux
linuxlinux
linuxlinux
linuxlinux
linuxlinux
linuxlinux
linuxlinux>= 3.16.83 < 3.173.17
linuxlinux>= 4.14.163 < 4.154.15
linuxlinux>= 4.19.94 < 4.204.20
linuxlinux>= 4.4.209 < 4.54.5
linuxlinux>= 4.9.209 < 4.104.10
linuxlinux>= 5.4.9 < 5.4.2915.4.291
linuxlinux>= e31f7939c1c27faa5d0e3f14519eaf7c89e8a69d < ca381f60a3bb7cfaa618d73ca411610bd7fc3149ca381f60a3bb7cfaa618d73ca411610bd7fc3149
linuxlinux>= e31f7939c1c27faa5d0e3f14519eaf7c89e8a69d < 3d738b53ed6cddb68e68c9874520a4bf846163b53d738b53ed6cddb68e68c9874520a4bf846163b5
linuxlinux>= e31f7939c1c27faa5d0e3f14519eaf7c89e8a69d < 992775227843c9376773784b8b362add44592ad7992775227843c9376773784b8b362add44592ad7
linuxlinux>= e31f7939c1c27faa5d0e3f14519eaf7c89e8a69d < f58a3f8e284d0bdf94164a8e61cd4e70d337a1a3f58a3f8e284d0bdf94164a8e61cd4e70d337a1a3
linuxlinux>= e31f7939c1c27faa5d0e3f14519eaf7c89e8a69d < 746cc474a95473591853927b3a9792a2d671155b746cc474a95473591853927b3a9792a2d671155b
linuxlinux>= e31f7939c1c27faa5d0e3f14519eaf7c89e8a69d < 9cdac46fa7e854e587eb5f393fe491b6d7a9bdf69cdac46fa7e854e587eb5f393fe491b6d7a9bdf6
linuxlinux>= e31f7939c1c27faa5d0e3f14519eaf7c89e8a69d < a1a7eb89ca0b89dc1c326eeee2596f263291aca3a1a7eb89ca0b89dc1c326eeee2596f263291aca3
linuxlinux>= f0629ee3922f10112584b1898491fecc74d98b3b < 5b3d32f607f0478b414b16516cf27f9170cf66c85b3d32f607f0478b414b16516cf27f9170cf66c8
linuxlinux_kernel
linuxlinux_kernel>= 0 < 5.10.237-15.10.237-1
linuxlinux_kernel>= 0 < 6.1.133-16.1.133-1

CVSS provenance

nvdv3.15.5MEDIUMCVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
osv8.8HIGH
vendor_ubuntu8.8HIGH
vendor_debian5.5MEDIUM
vendor_msrc5.5MEDIUM
vendor_redhat5.5MEDIUM
Stop checking back — get the weekly exploitation signal.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.