PT-2025-14490 · Linux+9 · Linux Kernel+9

Published

2025-01-14

·

Updated

2026-01-20

·

CVE-2025-21993

CVSS v3.1

7.1

High

VectorAV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:H
Name of the Vulnerable Software and Affected Versions Linux kernel (affected versions not specified)
Description A vulnerability in the Linux kernel has been resolved, related to the iscsi ibft module. When performing an iSCSI boot using IPv6, the iscsistart still reads the /sys/firmware/ibft/ethernetX/subnet-mask entry, causing a UBSAN shift-out-of-bounds warning due to the IPv6 prefix length being 64. The concept of a subnet mask does not apply to IPv6, and the value is set to ~0 to suppress the warning message.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Exploit

Out of bounds Read

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

ALSA-2025:7423
ALT-PU-2025-12647
ALT-PU-2025-5786
AZL-59769
AZL-59892
BDU:2025-05651
CVE-2025-21993
DLA-4178-1
DLA-4193-1
DSA-5900-1
ECHO-9984-9314-DB21
INFSA-2025_7423
MGASA-2025-0142
MGASA-2025-0146
OESA-2025-1446
OESA-2025-1448
OESA-2025-1449
OESA-2025-1450
OESA-2025-1465
OPENSUSE-SU-2025_01614-1
OPENSUSE-SU-2025_01707-1
RHSA-2025:7423
RHSA-2025:7956
RHSA-2025_7423
SUSE-SU-2025:01614-1
SUSE-SU-2025:01707-1
SUSE-SU-2025:01919-1
SUSE-SU-2025:01951-1
SUSE-SU-2025:01964-1
SUSE-SU-2025:01967-1
SUSE-SU-2025:1293-1
SUSE-SU-2025:20192-1
SUSE-SU-2025:20206-1
SUSE-SU-2025:20270-1
SUSE-SU-2025:20283-1
SUSE-SU-2025_01614-1
SUSE-SU-2025_01707-1
SUSE-SU-2025_01951-1
SUSE-SU-2025_01964-1
SUSE-SU-2025_01967-1
SUSE-SU-2025_1293-1
USN-7445-1
USN-7448-1
USN-7449-1
USN-7449-2
USN-7450-1
USN-7451-1
USN-7452-1
USN-7453-1
USN-7455-1
USN-7455-2
USN-7455-3
USN-7455-4
USN-7455-5
USN-7459-1
USN-7459-2
USN-7460-1
USN-7468-1
USN-7475-1
USN-7523-1
USN-7524-1
USN-7585-1
USN-7585-2
USN-7585-3
USN-7585-4
USN-7585-5
USN-7585-6
USN-7585-7
USN-7640-1

Affected Products

Alt Linux
Almalinux
Astra Linux
Debian
Linuxmint
Linux Kernel
Red Hat
Red Os
Suse
Ubuntu