CVE-2025-21785
Published: Feb 27, 2025
Modified: May 11, 2026
Description
In the Linux kernel, the following vulnerability has been resolved: arm64: cacheinfo: Avoid out-of-bounds write to cacheinfo array The loop that detects/populates cache information already has a bounds check on the array size but does not account for cache levels with separate data/instructions cache. Fix this by incrementing the index for any populated leaf (instead of any populated level).
| Vendor | Product | Versions |
|---|---|---|
Linux | Linux | affected 5d425c18653731af62831d30a4fa023d532657a9 - < 4371ac7b494e933fffee2bd6265d18d73c4f05aaaffected 5d425c18653731af62831d30a4fa023d532657a9 - < e4fde33107351ec33f1a64188612fbc6ca659284affected 5d425c18653731af62831d30a4fa023d532657a9 - < 88a3e6afaf002250220793df99404977d343db14affected 5d425c18653731af62831d30a4fa023d532657a9 - < 4ff25f0b18d1d0174c105e4620428bcdc1213860affected 5d425c18653731af62831d30a4fa023d532657a9 - < ab90894f33c15b14c1cee6959ab6c8dcb09127f8+3 more versions |
Linux | Linux | affected 4.0unaffected 0 - < 4.0unaffected 5.4.291 - <= 5.4.*unaffected 5.10.235 - <= 5.10.*unaffected 5.15.179 - <= 5.15.*+5 more versions |
References
Security Training
Train your team to recognize and prevent security threats with our comprehensive security awareness program.
Start TrainingVulnerability Scanning
Discover vulnerabilities in your applications and infrastructure before attackers do.
Scan Now