THREAT OPS › Threat News › [NVD] CVE-2025-21647 (HIGH 7.3) — In the Linux kernel, the following vulnerability has been resolved:
sched: sch_cake: add bounds checks to host bulk flow fairness counts
Even though we fixed a logic error in the commit cited below, syzbot
still managed to trigger an underflow of the per-host bulk flow
counters
[NVD] CVE-2025-21647 (HIGH 7.3) — In the Linux kernel, the following vulnerability has been resolved: sched: sch_cake: add bounds checks to host bulk flow fairness counts Even though we fixed a logic error in the commit cited below, syzbot still managed to trigger an underflow of the per-host bulk flow counters
CVE-2025-21647 CVSS: 7.3 HIGH Published: 2025-01-19T11:15:10.307
In the Linux kernel, the following vulnerability has been resolved:
sched: sch_cake: add bounds checks to host bulk flow fairness counts
Even though we fixed a logic error in the commit cited below, syzbot still managed to trigger an underflow of the per-host bulk flow counters, leading to an out of bounds memory access.
To avoid
Indicators of compromise
- CVE-2025-21647cve
Original source: https://nvd.nist.gov/vuln/detail/CVE-2025-21647