cbcvebase.
CVE-2025-21979
published 2025-04-01

CVE-2025-21979: In the Linux kernel, the following vulnerability has been resolved: wifi: cfg80211: cancel wiphy_work before freeing wiphy A wiphy_work can be queued from the…

PriorityP336high7.8CVSS 3.1
AVLACLPRLUINSUCHIHAH
EPSS
0.19%
8.6th percentile
In the Linux kernel, the following vulnerability has been resolved: wifi: cfg80211: cancel wiphy_work before freeing wiphy A wiphy_work can be queued from the moment the wiphy is allocated and initialized (i.e. wiphy_new_nm). When a wiphy_work is queued, the rdev::wiphy_work is getting queued. If wiphy_free is called before the rdev::wiphy_work had a chance to run, the wiphy memory will be freed, and then when it eventally gets to run it'll use invalid memory. Fix this by canceling the work before freeing the wiphy.

Affected

20 ranges
VendorProductVersion rangeFixed in
debianlinux< linux 6.1.133-1 (bookworm)linux 6.1.133-1 (bookworm)
debianlinux-6.1< linux 6.1.133-1 (bookworm)linux 6.1.133-1 (bookworm)
linuxlinux
linuxlinux>= 3fcc6d7d5f40dad56dee7bde787b7e23edd4b93c < 0272d4af7f92997541d8bbf4c51918b93ded6ee20272d4af7f92997541d8bbf4c51918b93ded6ee2
linuxlinux>= 6.1.57 < 6.1.1326.1.132
linuxlinux>= a3ee4dc84c4e9d14cb34dad095fd678127aca5b6 < 75d262ad3c36d52852d764588fcd887f0fcd913875d262ad3c36d52852d764588fcd887f0fcd9138
linuxlinux>= a3ee4dc84c4e9d14cb34dad095fd678127aca5b6 < a5158d67bff06cb6fea31be39aeb319fd908ed8ea5158d67bff06cb6fea31be39aeb319fd908ed8e
linuxlinux>= a3ee4dc84c4e9d14cb34dad095fd678127aca5b6 < dea22de162058216a90f2706f0d0b36f0ff309fddea22de162058216a90f2706f0d0b36f0ff309fd
linuxlinux>= a3ee4dc84c4e9d14cb34dad095fd678127aca5b6 < 72d520476a2fab6f3489e8388ab524985d6c4b9072d520476a2fab6f3489e8388ab524985d6c4b90
linuxlinux>= ddb1bfbf4ab5c753954d0cd728253b642934a9f2 < 8930a3e1568cf534f86c8ed2def817c6d0528fc18930a3e1568cf534f86c8ed2def817c6d0528fc1
linuxlinux_kernel
linuxlinux_kernel>= 0 < 6.1.133-16.1.133-1
linuxlinux_kernel>= 0 < 6.12.20-16.12.20-1
linuxlinux_kernel>= 0 < 6.12.20-16.12.20-1
linuxlinux_kernel>= 0 < 6.8.0-84.846.8.0-84.84
linuxlinux_kernel>= 6.1.57 < 6.1.1326.1.132
linuxlinux_kernel>= 6.13 < 6.13.86.13.8
linuxlinux_kernel>= 6.5 < 6.6.846.6.84
linuxlinux_kernel>= 6.7 < 6.12.206.12.20
msrcazl3_kernel_6.6.82.1-1_on_azure_linux_3.0

CVSS provenance

nvdv3.17.8HIGHCVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
osv7.8HIGH
vendor_debian7.8HIGH
vendor_msrc7.8HIGH
vendor_redhat7.8HIGH
vendor_ubuntu5.9MEDIUM
Stop checking back — get the weekly exploitation signal.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.