PT-2025-6059 · Linux+1 · Linux Kernel+1

Jann Horn

·

Published

2025-01-14

·

Updated

2025-02-11

·

CVE-2025-21686

CVSS v2.0

4.6

Medium

VectorAV:L/AC:L/Au:S/C:N/I:N/A:C
Name of the Vulnerable Software and Affected Versions Linux kernel (affected versions not specified)
Description The issue arises when IORING REGISTER CLONE BUFFERS is used to clone buffers from one uring instance to another, where the two instances use different memory managers (MMs) for accounting. If the first instance is closed before the second, the pinned memory counters for the second instance can be decremented incorrectly, leading to negative locked memory. This occurs because the pinned memory was originally accounted for through the first instance.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

RCE

Weakness Enumeration

Related Identifiers

BDU:2025-02808
CVE-2025-21686

Affected Products

Astra Linux
Linux Kernel