cbcvebase.
CVE-2025-21993
published 2025-04-02

CVE-2025-21993: In the Linux kernel, the following vulnerability has been resolved: iscsi_ibft: Fix UBSAN shift-out-of-bounds warning in ibft_attr_show_nic() When performing…

PriorityP429high7.1CVSS 3.1
AVLACLPRLUINSUCHINAH
EPSS
0.20%
10.4th percentile
In the Linux kernel, the following vulnerability has been resolved: iscsi_ibft: Fix UBSAN shift-out-of-bounds warning in ibft_attr_show_nic() When performing an iSCSI boot using IPv6, iscsistart still reads the /sys/firmware/ibft/ethernetX/subnet-mask entry. Since the IPv6 prefix length is 64, this causes the shift exponent to become negative, triggering a UBSAN warning. As the concept of a subnet mask does not apply to IPv6, the value is set to ~0 to suppress the warning message.

Affected

29 ranges· showing 25
VendorProductVersion rangeFixed in
debianlinux< linux 6.1.133-1 (bookworm)linux 6.1.133-1 (bookworm)
debianlinux-6.1< linux 6.1.133-1 (bookworm)linux 6.1.133-1 (bookworm)
linuxlinux
linuxlinux>= 138fe4e069798d9aa948a5402ff15e58f483ee4e < a858cd58dea06cf85b142673deea8c5d87f11e70a858cd58dea06cf85b142673deea8c5d87f11e70
linuxlinux>= 138fe4e069798d9aa948a5402ff15e58f483ee4e < f763c82db8166e28f45b7cc4a5398a7859665940f763c82db8166e28f45b7cc4a5398a7859665940
linuxlinux>= 138fe4e069798d9aa948a5402ff15e58f483ee4e < b388e185bfad32bfed6a97a6817f74ca00a4318fb388e185bfad32bfed6a97a6817f74ca00a4318f
linuxlinux>= 138fe4e069798d9aa948a5402ff15e58f483ee4e < 9bfa80c8aa4e06dff55a953c3fffbfc68a3a3b1c9bfa80c8aa4e06dff55a953c3fffbfc68a3a3b1c
linuxlinux>= 138fe4e069798d9aa948a5402ff15e58f483ee4e < 2d1eef248107bdf3d5a69d0fde04c30a79a7bf5d2d1eef248107bdf3d5a69d0fde04c30a79a7bf5d
linuxlinux>= 138fe4e069798d9aa948a5402ff15e58f483ee4e < b253660fac5e0e9080d2c95e3a029e1898d49afbb253660fac5e0e9080d2c95e3a029e1898d49afb
linuxlinux>= 138fe4e069798d9aa948a5402ff15e58f483ee4e < c1c6e527470e5eab0b2d57bd073530fbace39eabc1c6e527470e5eab0b2d57bd073530fbace39eab
linuxlinux>= 138fe4e069798d9aa948a5402ff15e58f483ee4e < 07e0d99a2f701123ad3104c0f1a1e66bce74d6e507e0d99a2f701123ad3104c0f1a1e66bce74d6e5
linuxlinux_kernel< 6.1.1326.1.132
linuxlinux_kernel
linuxlinux_kernel>= 0 < 5.10.237-15.10.237-1
linuxlinux_kernel>= 0 < 6.1.133-16.1.133-1
linuxlinux_kernel>= 0 < 6.12.20-16.12.20-1
linuxlinux_kernel>= 0 < 6.12.20-16.12.20-1
linuxlinux_kernel>= 0 < 5.15.0-138.1485.15.0-138.148
linuxlinux_kernel>= 0 < 6.8.0-58.606.8.0-58.60
linuxlinux_kernel>= 0 < 5.4.0-218.2385.4.0-218.238
linuxlinux_kernel>= 6.13 < 6.13.86.13.8
linuxlinux_kernel>= 6.2 < 6.6.846.6.84
linuxlinux_kernel>= 6.7 < 6.12.206.12.20
msrcazl3_kernel_6.6.82.1-1_on_azure_linux_3.0
msrcazl3_kernel_6.6.85.1-2_on_azure_linux_3.0

CVSS provenance

nvdv3.17.1HIGHCVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:H
osv8.8HIGH
vendor_ubuntu8.8HIGH
vendor_debian7.1HIGH
vendor_msrc7.1HIGH
vendor_redhat7.1HIGH
Stop checking back — get the weekly exploitation signal.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.