PT-2025-8805 · Linux+6 · Linux Kernel+6

Syzbot

·

Published

2025-01-08

·

Updated

2026-04-20

·

CVE-2025-21722

CVSS v3.1

7.8

High

VectorAV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions Linux kernel (affected versions not specified)
Description A vulnerability in the Linux kernel has been resolved, specifically in the nilfs2 filesystem. The issue occurs when the filesystem detects corruption and falls back to read-only, causing inconsistencies in the buffer state and potentially leading to a use-after-free issue. This happens when the mark buffer dirty() function is called to set a data or metadata buffer as dirty, but it detects that the buffer is not in the uptodate state. Another issue arises when nilfs btree propagate() detects that the origin buffer is not dirty, even though it should be. These issues are caused by callbacks that handle page/folio write requests, which forcibly clear various states, including the working state of the buffers they hold, at unexpected times when they detect read-only fallback.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Exploit

Use After Free

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

ALT-PU-2025-12647
ALT-PU-2025-5012
ALT-PU-2025-5359
ALT-PU-2025-5361
ALT-PU-2025-5437
BDU:2025-04375
CVE-2025-21722
DLA-4102-1
DLA-4178-1
OESA-2025-1370
OESA-2025-1371
OESA-2025-1372
OESA-2025-1409
OESA-2025-1410
USN-7510-1
USN-7510-2
USN-7510-3
USN-7510-4
USN-7510-5
USN-7510-6
USN-7510-7
USN-7510-8
USN-7511-1
USN-7511-2
USN-7511-3
USN-7512-1
USN-7516-1
USN-7516-2
USN-7516-3
USN-7516-4
USN-7516-5
USN-7516-6
USN-7516-7
USN-7516-8
USN-7516-9
USN-7517-1
USN-7517-2
USN-7517-3
USN-7518-1
USN-7539-1
USN-7540-1
USN-7593-1
USN-7602-1
USN-7640-1
USN-7651-1
USN-7651-2
USN-7651-3
USN-7651-4
USN-7651-5
USN-7651-6
USN-7652-1
USN-7653-1
USN-7737-1
USN-7907-1
USN-7907-2
USN-7907-3
USN-7907-4
USN-7907-5
USN-7930-1
USN-7930-2
USN-7937-1

Affected Products

Alt Linux
Astra Linux
Debian
Linuxmint
Linux Kernel
Red Os
Ubuntu