CVE-2025-22121: ext4: fix out-of-bound read in ext4_xattr_inode_dec_ref_all()
ext4: fix out-of-bound read in ext4xattrinodedecrefall()
Affected Software
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Upgrade
Upgrade to a fixed release to a version that resolves this vulnerability.
Fixed in 6.6.121.1-1
Event History
Frequently Asked Questions
What is the severity of CVE-2025-22121?
CVE-2025-22121 is classified as a high-severity vulnerability due to its potential to cause use-after-free conditions in the Linux kernel.
How do I fix CVE-2025-22121?
To fix CVE-2025-22121, ensure that you update your Linux kernel to the latest patched version provided by your distribution.
What type of vulnerability is CVE-2025-22121?
CVE-2025-22121 is a memory corruption vulnerability specifically related to out-of-bounds reads in the ext4 filesystem.
Which versions of the Linux kernel are affected by CVE-2025-22121?
CVE-2025-22121 affects multiple versions of the Linux kernel prior to the security patches that address this issue.
What are the potential impacts of CVE-2025-22121?
The potential impacts of CVE-2025-22121 include system crashes, data corruption, and the possibility of remote code execution if exploited.