PT-2025-9968 · Linux+3 · Linux Kernel+3

Publicado

2025-01-29

·

Atualizado

2025-10-31

·

CVE-2025-21827

CVSS v3.1

5.5

Média

VetorAV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
Name of the Vulnerable Software and Affected Versions Linux kernel (affected versions not specified)
Description A vulnerability in the Linux kernel's Bluetooth functionality has been resolved. The issue was related to the Mediatek btusb code, which did not properly claim the device lock when calling usb driver claim interface() from certain paths. This led to errors such as "Failed to claim iso interface" and, in some cases, NULL pointer dereferences. The fix involves adding locks for usb driver claim interface() to prevent these errors.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Exploit

Improper Locking

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Enumeração de Fraquezas

Identificadores relacionados

BDU:2025-12054
CVE-2025-21827
USN-7521-1
USN-7521-2
USN-7521-3

Produtos afetados

Astra Linux
Linuxmint
Linux Kernel
Ubuntu