cbcvebase.
CVE-2025-21904
published 2025-04-01

CVE-2025-21904: In the Linux kernel, the following vulnerability has been resolved: caif_virtio: fix wrong pointer check in cfv_probe() del_vqs() frees virtqueues, therefore…

PriorityP418medium5.5CVSS 3.1
AVLACLPRLUINSUCNINAH
EPSS
0.21%
10.7th percentile
In the Linux kernel, the following vulnerability has been resolved: caif_virtio: fix wrong pointer check in cfv_probe() del_vqs() frees virtqueues, therefore cfv->vq_tx pointer should be checked for NULL before calling it, not cfv->vdev. Also the current implementation is redundant because the pointer cfv->vdev is dereferenced before it is checked for NULL. Fix this by checking cfv->vq_tx for NULL instead of cfv->vdev before calling del_vqs().

Affected

30 ranges· showing 25
VendorProductVersion rangeFixed in
debianlinux< linux 6.1.133-1 (bookworm)linux 6.1.133-1 (bookworm)
debianlinux-6.1< linux 6.1.133-1 (bookworm)linux 6.1.133-1 (bookworm)
linuxlinux
linuxlinux>= 0d2e1a2926b1839a4b74519e660739b2566c9386 < 990fff6980d0c1693d60a812f58dbf93eab0473f990fff6980d0c1693d60a812f58dbf93eab0473f
linuxlinux>= 0d2e1a2926b1839a4b74519e660739b2566c9386 < 7b5fe58959822e6cfa884327cabba6be3b01883d7b5fe58959822e6cfa884327cabba6be3b01883d
linuxlinux>= 0d2e1a2926b1839a4b74519e660739b2566c9386 < 8e4e08ca4cc634b337bb74bc9a70758fdeda0bcb8e4e08ca4cc634b337bb74bc9a70758fdeda0bcb
linuxlinux>= 0d2e1a2926b1839a4b74519e660739b2566c9386 < 29e0cd296c87240278e2f7ea4cf3f496b60c03af29e0cd296c87240278e2f7ea4cf3f496b60c03af
linuxlinux>= 0d2e1a2926b1839a4b74519e660739b2566c9386 < 90d302619ee7ce5ed0c69c29c290bdccfde6641890d302619ee7ce5ed0c69c29c290bdccfde66418
linuxlinux>= 0d2e1a2926b1839a4b74519e660739b2566c9386 < 56cddf71cce3b15b078e937fadab29962b6f664356cddf71cce3b15b078e937fadab29962b6f6643
linuxlinux>= 0d2e1a2926b1839a4b74519e660739b2566c9386 < 597c27e5f04cb50e56cc9aeda75d3e42b6b89c3e597c27e5f04cb50e56cc9aeda75d3e42b6b89c3e
linuxlinux>= 0d2e1a2926b1839a4b74519e660739b2566c9386 < a466fd7e9fafd975949e5945e2f70c33a94b1a70a466fd7e9fafd975949e5945e2f70c33a94b1a70
linuxlinux_kernel
linuxlinux_kernel>= 0 < 5.10.237-15.10.237-1
linuxlinux_kernel>= 0 < 6.1.133-16.1.133-1
linuxlinux_kernel>= 0 < 6.12.19-16.12.19-1
linuxlinux_kernel>= 0 < 6.12.19-16.12.19-1
linuxlinux_kernel>= 0 < 5.4.0-216.2365.4.0-216.236
linuxlinux_kernel>= 0 < 5.15.0-140.1505.15.0-140.150
linuxlinux_kernel>= 0 < 6.8.0-84.846.8.0-84.84
linuxlinux_kernel>= 3.10 < 5.4.2915.4.291
linuxlinux_kernel>= 5.11 < 5.15.1795.15.179
linuxlinux_kernel>= 5.16 < 6.1.1316.1.131
linuxlinux_kernel>= 5.5 < 5.10.2355.10.235
linuxlinux_kernel>= 6.13 < 6.13.76.13.7
linuxlinux_kernel>= 6.2 < 6.6.836.6.83

CVSS provenance

nvdv3.15.5MEDIUMCVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
osv8.8HIGH
vendor_ubuntu8.8HIGH
vendor_debian5.5MEDIUM
vendor_msrc5.5MEDIUM
vendor_redhat5.5MEDIUM
Stop checking back — get the weekly exploitation signal.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.