CVE Database
/

CVE-2025-21761

Back to search

CVE-2025-21761

Published: Feb 27, 2025

Modified: May 12, 2026

PUBLISHED

Description

In the Linux kernel, the following vulnerability has been resolved: openvswitch: use RCU protection in ovs_vport_cmd_fill_info() ovs_vport_cmd_fill_info() can be called without RTNL or RCU. Use RCU protection and dev_net_rcu() to avoid potential UAF.

VendorProductVersions

Linux

Linux

affected
9354d452034273a50a4fd703bea31e5d6b1fc20b - < e85a25d1a9985645e796039e843d1de581d2de1e
affected
9354d452034273a50a4fd703bea31e5d6b1fc20b - < a8816b3f1f151373fd30f1996f00480126c8bb11
affected
9354d452034273a50a4fd703bea31e5d6b1fc20b - < a884f57600e463f69d7b279c4598b865260b62a1
affected
9354d452034273a50a4fd703bea31e5d6b1fc20b - < 7e01abc34e87abd091e619161a20f54ed4e3e2da
affected
9354d452034273a50a4fd703bea31e5d6b1fc20b - < 8ec57509c36c8b9a23e50b7858dda0c520a2d074

+3 more versions

Linux

Linux

affected
4.15
unaffected
0 - < 4.15
unaffected
5.4.291 - <= 5.4.*
unaffected
5.10.235 - <= 5.10.*
unaffected
5.15.179 - <= 5.15.*

+5 more versions

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now