THREATOPS
THREAT OPSThreat News › [NVD] CVE-2025-21647 (HIGH 7.3) — In the Linux kernel, the following vulnerability has been resolved: sched: sch_cake: add bounds checks to host bulk flow fairness counts Even though we fixed a logic error in the commit cited below, syzbot still managed to trigger an underflow of the per-host bulk flow counters

[NVD] CVE-2025-21647 (HIGH 7.3) — In the Linux kernel, the following vulnerability has been resolved: sched: sch_cake: add bounds checks to host bulk flow fairness counts Even though we fixed a logic error in the commit cited below, syzbot still managed to trigger an underflow of the per-host bulk flow counters

lownvdPublished 2025-01-19

CVE-2025-21647 CVSS: 7.3 HIGH Published: 2025-01-19T11:15:10.307

In the Linux kernel, the following vulnerability has been resolved:

sched: sch_cake: add bounds checks to host bulk flow fairness counts

Even though we fixed a logic error in the commit cited below, syzbot still managed to trigger an underflow of the per-host bulk flow counters, leading to an out of bounds memory access.

To avoid

Indicators of compromise

Original source: https://nvd.nist.gov/vuln/detail/CVE-2025-21647