CVE-2025-21949

CVSS 3.1 Score 5.5 of 10 (medium)

Details

Published Apr 1, 2025
Updated: Apr 11, 2025

Summary

CVE-2025-21949: A vulnerability exists in the Linux kernel where the base address allocated from hugetlbfs is not aligned with pmd size. This misalignment causes a kernel bug when running the "hugefork02" test case, resulting in a dmesg error message. The problem has been resolved by adding a check for hugetlbfs and aligning the base address with pmd size. This issue is similar to commit 7f24cbc9c4d42db8a3c8484d1, which aimed to teach generic_get_unmapped_area to handle hugetlb mappings.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share