PT-2025-8990 · Linux+6 · Linux Kernel+6

Published

2025-01-20

·

Updated

2026-04-20

·

CVE-2025-21799

CVSS v3.1

5.5

Medium

VectorAV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
Name of the Vulnerable Software and Affected Versions Linux kernel (affected versions not specified)
Description A vulnerability has been identified in the Linux kernel related to the am65-cpsw driver. The issue arises when the am65 cpsw nuss remove tx chns() function attempts to free an invalid IRQ, leading to a kernel warning. This occurs when the k3 udma glue tx get irq() function returns a negative error value, which is not properly checked. The problem is triggered when a user invokes the .set channels function, resulting in a call chain that includes am65 cpsw set channels(), am65 cpsw nuss update tx rx chns(), am65 cpsw nuss remove tx chns(), and am65 cpsw nuss init tx chns(). If am65 cpsw nuss init tx chns() fails, it sets tx chn->irq to a negative value, which is then attempted to be freed, causing the warning.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Exploit

RCE

NULL Pointer Dereference

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

BDU:2025-11944
CVE-2025-21799
DLA-4102-1
DLA-4178-1
OESA-2025-1339
OESA-2025-1340
OPENSUSE-SU-2025_0847-1
OPENSUSE-SU-2025_0856-1
OPENSUSE-SU-2025_0955-1
SUSE-SU-2025:01919-1
SUSE-SU-2025:0847-1
SUSE-SU-2025:0856-1
SUSE-SU-2025:0955-1
SUSE-SU-2025:20190-1
SUSE-SU-2025:20192-1
SUSE-SU-2025:20260-1
SUSE-SU-2025:20270-1
SUSE-SU-2025_0847-1
SUSE-SU-2025_0856-1
SUSE-SU-2025_0955-1
USN-7510-1
USN-7510-2
USN-7510-3
USN-7510-4
USN-7510-5
USN-7510-6
USN-7510-7
USN-7510-8
USN-7511-1
USN-7511-2
USN-7511-3
USN-7512-1
USN-7521-1
USN-7521-2
USN-7521-3
USN-7593-1
USN-7602-1
USN-7651-1
USN-7651-2
USN-7651-3
USN-7651-4
USN-7651-5
USN-7651-6
USN-7652-1
USN-7653-1
USN-7737-1

Affected Products

Astra Linux
Debian
Linuxmint
Linux Kernel
Red Os
Suse
Ubuntu