PT-2025-14311 · Linux+6 · Linux Kernel+6
Published
2025-04-01
·
Updated
2026-04-20
·
CVE-2025-21930
CVSS v2.0
6.5
Medium
| Vector | AV:A/AC:H/Au:S/C:C/I:C/A:C |
Name of the Vulnerable Software and Affected Versions
Linux kernel versions prior to 6.12.18
Linux kernel versions prior to 6.13.6
Description
The issue is related to the Linux kernel's iwlwifi module, where it attempts to communicate with a dead firmware, resulting in a bad state and warnings. The problem occurs when the
iwl trans send cmd function is called without checking if the firmware is alive. This can lead to a call trace with warnings and errors, including iwl fw dbg clear monitor buf and iwl dbgfs fw dbg clear write functions.Recommendations
For Linux kernel versions prior to 6.12.18, update to version 6.12.18 or later to resolve the issue.
For Linux kernel versions prior to 6.13.6, update to version 6.13.6 or later to resolve the issue.
As a temporary workaround, consider adding a check to ensure the firmware is alive before sending commands using the
iwl trans send cmd function.Exploit
Fix
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Alt Linux
Astra Linux
Linuxmint
Linux Kernel
Red Os
Suse
Ubuntu