CVE-2025-21440

CVSS 3.1 Score 7.8 of 10 (high)

Details

Published Apr 7, 2025
CWE ID 787

Summary

CVE-2025-21440 is a newly identified vulnerability affecting WLAN drivers. The issue arises when an IOCTL call is initiated from user-space to write board data, leading to memory corruption. This can potentially allow attackers to execute arbitrary code or cause denial-of-service conditions, posing a significant security risk. The exact cause of the memory corruption is still under investigation. Users are urged to apply patches or updates to affected systems as soon as possible to mitigate this vulnerability.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share