PT-2025-9982 · Linux+3 · Linux Kernel+3

Rafael Buchbinder

·

Published

2025-02-06

·

Updated

2025-04-01

·

CVE-2025-21834

CVSS v3.1

5.5

Medium

VectorAV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
Name of the Vulnerable Software and Affected Versions Linux kernel (affected versions not specified)
Description A vulnerability in the Linux kernel has been resolved, related to the seccomp filtering of the uretprobe system call. When uretprobes are attached to processes running inside Docker, the attached process is segfaulted due to the default seccomp filters in Docker blocking the uretprobe system call. This issue affects userspace applications that use seccomp to control their syscall surface. The uretprobe system call is a kernel implementation detail and is not used directly by userspace application code.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Exploit

Improper Resource Release

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

BDU:2025-11804
CVE-2025-21834
USN-7379-1
USN-7379-2
USN-7380-1
USN-7381-1
USN-7382-1

Affected Products

Astra Linux
Linuxmint
Linux Kernel
Ubuntu