CVE-2025-21675

CVSS 3.1 Score 5.5 of 10 (medium)

Details

Published Jan 31, 2025
Updated: Feb 4, 2025
CWE ID 476

Summary

[#1] CVE-2025-21675: A kernel vulnerability in the Linux mlx5 driver has been identified and addressed. The issue arises when attempting to destroy lag definers in the tt_map, resulting in definers being double-destroyed and causing a kernel crash. This leads to a NULL pointer dereference and system instability. The affected components include mlx5_core, mlx5_fwctl, and mlxdevm. Users are advised to update their Linux kernel to mitigate this issue.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share