CVE-2025-21690: scsi: storvsc: Ratelimit warning logs to prevent VM denial of service
In the Linux kernel, the following vulnerability has been resolved:
scsi: storvsc: Ratelimit warning logs to prevent VM denial of service
If there's a persistent error in the hypervisor, the SCSI warning for failed I/O can flood the kernel log and max out CPU utilization, preventing troubleshooting from the VM side. Ratelimit the warning so it doesn't DoS the VM.
Affected Software
Remediation
Event History
Frequently Asked Questions
What is the severity of CVE-2025-21690?
CVE-2025-21690 is labeled with a severity rating that highlights its potential impact on system performance due to excessive CPU utilization.
How do I fix CVE-2025-21690?
Fixing CVE-2025-21690 involves updating to the latest version of the Linux kernel that includes the patches for this vulnerability.
What systems are affected by CVE-2025-21690?
CVE-2025-21690 affects systems running the Linux Kernel, particularly those utilizing SCSI storage drivers.
What are the consequences of CVE-2025-21690 exploitation?
Exploitation of CVE-2025-21690 can lead to a denial of service by flooding kernel logs and exhausting CPU resources.
When was CVE-2025-21690 discovered?
CVE-2025-21690 was identified in the context of various Linux kernel releases and has been addressed in subsequent updates.