PT-2025-8794 · Linux+7 · Linux Kernel+7

Nikita Zhandarovich

·

Published

2025-01-15

·

Updated

2026-04-20

·

CVE-2025-21711

CVSS v3.1

5.5

Medium

VectorAV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
Name of the Vulnerable Software and Affected Versions Linux kernel (affected versions not specified)
Description The issue concerns integer overflows in the rose setsockopt() function, which can occur when large arguments are passed and multiplied by additional values. This is addressed by checking the contents of the opt variable and returning an error if the values are too large. The fix also involves switching to unsigned int and removing an unnecessary check for negative opt values in the ROSE IDLE case.
Recommendations For the affected Linux kernel versions, apply the fix by implementing the checks for the opt variable in the rose setsockopt() function and switch to unsigned int to prevent integer overflows. As a temporary workaround, consider restricting the use of the rose setsockopt() function until the issue is fully resolved.

Exploit

Fix

Integer Overflow

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

ALT-PU-2025-12647
AZL-58005
BDU:2025-11914
CVE-2025-21711
DLA-4102-1
DLA-4178-1
OESA-2025-1339
OESA-2025-1340
OPENSUSE-SU-2025_1177-1
OPENSUSE-SU-2025_1178-1
OPENSUSE-SU-2025_1180-1
SUSE-SU-2025:01919-1
SUSE-SU-2025:1177-1
SUSE-SU-2025:1178-1
SUSE-SU-2025:1180-1
SUSE-SU-2025:20190-1
SUSE-SU-2025:20192-1
SUSE-SU-2025:20260-1
SUSE-SU-2025:20270-1
SUSE-SU-2025_1177-1
SUSE-SU-2025_1178-1
SUSE-SU-2025_1180-1
USN-7510-1
USN-7510-2
USN-7510-3
USN-7510-4
USN-7510-5
USN-7510-6
USN-7510-7
USN-7510-8
USN-7511-1
USN-7511-2
USN-7511-3
USN-7512-1
USN-7521-1
USN-7521-2
USN-7521-3
USN-7593-1
USN-7602-1
USN-7651-1
USN-7651-2
USN-7651-3
USN-7651-4
USN-7651-5
USN-7651-6
USN-7652-1
USN-7653-1
USN-7737-1

Affected Products

Alt Linux
Astra Linux
Debian
Linuxmint
Linux Kernel
Red Os
Suse
Ubuntu