CVE-2025-21988
02.04.2025, 13:15
In the Linux kernel, the following vulnerability has been resolved:
fs/netfs/read_collect: add to next->prev_donated
If multiple subrequests donate data to the same "next" request
(depending on the subrequest completion order), each of them would
overwrite the `prev_donated` field, causing data corruption and a
BUG() crash ("Can't donate prior to front").Enginsight| Vendor | Product | Version |
|---|---|---|
| linux | linux_kernel | 6.12 ≤ 𝑥 < 6.12.20 |
| linux | linux_kernel | 6.13 ≤ 𝑥 < 6.13.8 |
𝑥
= Vulnerable software versions
Debian Releases