First published: Thu Feb 27 2025(Updated: )
In the Linux kernel, the following vulnerability has been resolved: orangefs: fix a oob in orangefs_debug_write I got a syzbot report: slab-out-of-bounds Read in orangefs_debug_write... several people suggested fixes, I tested Al Viro's suggestion and made this patch.
Credit: 416baaa9-dc9f-4396-8d5f-8c081fb06d67
Affected Software | Affected Version | How to fix |
---|---|---|
Linux Kernel | ||
<6.1.129 | ||
>=6.2<6.6.79 | ||
>=6.7<6.12.16 | ||
>=6.13<6.13.4 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2025-21782 is considered a high-severity vulnerability due to its potential for causing slab-out-of-bounds reads.
To fix CVE-2025-21782, apply the appropriate patches from the Linux kernel that address the out-of-bounds issue in orangefs_debug_write.
The impacts of CVE-2025-21782 may include system instability and exposure to data leakage or unauthorized access due to memory corruption.
CVE-2025-21782 affects various versions of the Linux kernel; ensure to check the specific details in the update logs provided by the vendor.
To verify if your system is vulnerable to CVE-2025-21782, check the running Linux kernel version against the known affected versions listed in security advisories.