CVE Database
/

CVE-2025-21965

Back to search

CVE-2025-21965

Published: Apr 1, 2025

Modified: May 11, 2026

PUBLISHED

Description

In the Linux kernel, the following vulnerability has been resolved: sched_ext: Validate prev_cpu in scx_bpf_select_cpu_dfl() If a BPF scheduler provides an invalid CPU (outside the nr_cpu_ids range) as prev_cpu to scx_bpf_select_cpu_dfl() it can cause a kernel crash. To prevent this, validate prev_cpu in scx_bpf_select_cpu_dfl() and trigger an scx error if an invalid CPU is specified.

VendorProductVersions

Linux

Linux

affected
f0e1a0643a59bf1f922fa209cec86a170b784f3f - < 752b56bb76e2471197d25d6948d85753043b10da
affected
f0e1a0643a59bf1f922fa209cec86a170b784f3f - < 515680e76c536dd4aa8e2b5d674b0d441baddf5b
affected
f0e1a0643a59bf1f922fa209cec86a170b784f3f - < 9360dfe4cbd62ff1eb8217b815964931523b75b3

Linux

Linux

affected
6.12
unaffected
0 - < 6.12
unaffected
6.12.20 - <= 6.12.*
unaffected
6.13.8 - <= 6.13.*
unaffected
6.14 - <= *

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now