CVE-2025-21675
CVSS 3.1 Score 5.5 of 10 (medium)
Details
Published Jan 31, 2025
Updated: Feb 4, 2025
CWE ID 476
Summary
[#1] CVE-2025-21675: A kernel vulnerability in the Linux mlx5 driver has been identified and addressed. The issue arises when attempting to destroy lag definers in the tt_map, resulting in definers being double-destroyed and causing a kernel crash. This leads to a NULL pointer dereference and system instability. The affected components include mlx5_core, mlx5_fwctl, and mlxdevm. Users are advised to update their Linux kernel to mitigate this issue.
Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.
Share