CVE-2025-21714
CVSS 3.1 Score 7.8 of 10 (high)
Details
Published Feb 27, 2025
CWE ID 416
Summary
CVE-2025-21714 is a vulnerability affecting the Linux kernel that has been addressed. The issue lies within the RDMA/mlx5 subsystem and specifically involves a use-after-free concern. The vulnerability could enable double queueing of implicit ODP mr destroy work, leading to a user-after-free condition and potential memory corruption. Consequently, the system may experience instability or crashes. The affected kernel versions are yet to be determined.
Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.
Affected Products
- Linux Kernel
Affected Vendors
- LINUX