CVE-2025-21441

CVSS 3.1 Score 7.8 of 10 (high)

Details

Published Apr 7, 2025
CWE ID 787

Summary

CVE-2025-21441 is a memory corruption vulnerability affecting WLAN drivers. This issue is triggered when an IOCTL call is initiated from user-space to write board data. Successful exploitation of this vulnerability could result in arbitrary code execution or denial-of-service conditions. Users are strongly encouraged to apply relevant software patches as soon as possible to mitigate this risk. This vulnerability (CVE-2025-21441) lies within the WLAN driver, allowing memory corruption when receiving an IOCTL call from user-space. Malicious actors could potentially exploit this flaw for code execution or denial-of-service attacks, necessitating prompt application of the available patches.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share