CVE Database
/

CVE-2025-21735

Back to search

CVE-2025-21735

Published: Feb 27, 2025

Modified: May 12, 2026

PUBLISHED

Description

In the Linux kernel, the following vulnerability has been resolved: NFC: nci: Add bounds checking in nci_hci_create_pipe() The "pipe" variable is a u8 which comes from the network. If it's more than 127, then it results in memory corruption in the caller, nci_hci_connect_gate().

VendorProductVersions

Linux

Linux

affected
a1b0b9415817c14d207921582f269d03f848b69f - < bd249109d266f1d52548c46634a15b71656e0d44
affected
a1b0b9415817c14d207921582f269d03f848b69f - < 674e17c5933779a8bf5c15d596fdfcb5ccdebbc2
affected
a1b0b9415817c14d207921582f269d03f848b69f - < 10b3f947b609713e04022101f492d288a014ddfa
affected
a1b0b9415817c14d207921582f269d03f848b69f - < d5a461c315e5ff92657f84d8ba50caa5abf5c22a
affected
a1b0b9415817c14d207921582f269d03f848b69f - < 172cdfc3a5ea20289c58fb73dadc6fd4a8784a4e

+3 more versions

Linux

Linux

affected
4.4
unaffected
0 - < 4.4
unaffected
5.4.291 - <= 5.4.*
unaffected
5.10.235 - <= 5.10.*
unaffected
5.15.179 - <= 5.15.*

+5 more versions

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now