PT-2025-4331 · Linux+4 · Linux Kernel+4
Hao Lan
+1
·
Published
2025-01-06
·
Updated
2025-10-03
·
CVE-2025-21650
CVSS v3.1
7.8
High
| Vector | AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H |
Name of the Vulnerable Software and Affected Versions
Linux kernel (affected versions not specified)
Description
The issue is related to an out-of-bounds access in the Linux kernel HNS3. The TQP BAR space is divided into two segments, but the
hclge fetch pf reg function does not distinguish between these segments when reading the TQP space information. This can cause access bar space overwriting when the number of TQPs is greater than 1024. The problem has been considered during the initialization of tqp.io base, and tqp.io base is directly used when the queue is read in hclge fetch pf reg. An error message is generated when the kernel is unable to handle a paging request at a virtual address.Recommendations
At the moment, there is no information about a newer version that contains a fix for this vulnerability.
Exploit
Out of bounds Read
Memory Corruption
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Alt Linux
Linuxmint
Linux Kernel
Suse
Ubuntu