CVE-2025-21782

In the Linux kernel, the following vulnerability has been resolved: orangefs: fix a oob in orangefs_debug_write I got a syzbot report: slab-out-of-bounds Read in orangefs_debug_write... several people suggested fixes, I tested Al Viro's suggestion and made this patch.
Configurations

Configuration 1 (hide)

OR cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*
cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*
cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*
cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*

History

13 Mar 2025, 13:15

Type Values Removed Values Added
References
  • () https://git.kernel.org/stable/c/09d472a18c0ee1d5b83612cb919e33a1610fea16 -
  • () https://git.kernel.org/stable/c/18b7f841109f697840fe8633cf7ed7d32bd3f91b -
  • () https://git.kernel.org/stable/c/8725882b0f691f8113b230aea9df0256030a63a6 -
References () https://git.kernel.org/stable/c/1c5244299241cf49d8ae7b5054e299cc8faa4e09 - () https://git.kernel.org/stable/c/1c5244299241cf49d8ae7b5054e299cc8faa4e09 - Mailing List, Patch
References () https://git.kernel.org/stable/c/1da2697307dad281dd690a19441b5ca4af92d786 - () https://git.kernel.org/stable/c/1da2697307dad281dd690a19441b5ca4af92d786 - Mailing List, Patch
References () https://git.kernel.org/stable/c/2b84a231910cef2e0a16d29294afabfb69112087 - () https://git.kernel.org/stable/c/2b84a231910cef2e0a16d29294afabfb69112087 - Mailing List, Patch
References () https://git.kernel.org/stable/c/897f496b946fdcfab5983c983e4b513ab6682364 - () https://git.kernel.org/stable/c/897f496b946fdcfab5983c983e4b513ab6682364 - Mailing List, Patch
References () https://git.kernel.org/stable/c/f7c848431632598ff9bce57a659db6af60d75b39 - () https://git.kernel.org/stable/c/f7c848431632598ff9bce57a659db6af60d75b39 - Mailing List, Patch
CPE cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*
CVSS v2 : unknown
v3 : unknown
v2 : unknown
v3 : 7.1
CWE CWE-125
First Time Linux
Linux linux Kernel
Summary
  • (es) En el kernel de Linux, se ha resuelto la siguiente vulnerabilidad: orangefs: corregir un oob en orangefs_debug_write Recibí un informe de syzbot: slab-out-of-bounds Lectura en orangefs_debug_write... varias personas sugirieron soluciones, probé la sugerencia de Al Viro e hice este parche.

27 Feb 2025, 03:15

Type Values Removed Values Added
New CVE

Information

Published : 2025-02-27 03:15

Updated : 2025-03-13 13:15


NVD link : CVE-2025-21782

Mitre link : CVE-2025-21782

CVE.ORG link : CVE-2025-21782


JSON object : View

Products Affected

linux

  • linux_kernel
CWE
CWE-125

Out-of-bounds Read