CVE-2025-21993

Updated: 2025-04-11 04:28:57.917995

Description:

In the Linux kernel, the following vulnerability has been resolved: iscsi_ibft: Fix UBSAN shift-out-of-bounds warning in ibft_attr_show_nic() When performing an iSCSI boot using IPv6, iscsistart still reads the /sys/firmware/ibft/ethernetX/subnet-mask entry. Since the IPv6 prefix length is 64, this causes the shift exponent to become negative, triggering a UBSAN warning. As the concept of a subnet mask does not apply to IPv6, the value is set to ~0 to suppress the warning message.


Links NIST CIRCL RHEL Ubuntu

Severity

Severity Score
CVSS Version 2.x 0
CVSS Version 3.x HIGH 7.1000000000000005

Status

OS name Project name Version Score Severity Status Errata Last updated

Statement

AlmaLinux 9.2 ESU kernel 5.14.0 7.1 HIGH Released CLSA-2025:1747725447 2025-05-21 01:42:08
AlmaLinux 9.6 ESU kernel 5.14.0 7.1 HIGH Needs Triage 2025-07-03 10:52:09
CentOS 6 ELS kernel 2.6.32 7.1 HIGH Released CLSA-2025:1748366748 2025-06-10 00:30:48
CentOS 7 ELS kernel 3.10.0 7.1 HIGH Released CLSA-2025:1747260502 2025-05-28 00:30:41
CentOS 8.4 ELS kernel 4.18.0 7.1 HIGH Released CLSA-2025:1747688514 2025-05-21 01:42:09
CentOS 8.5 ELS kernel 4.18.0 7.1 HIGH Released CLSA-2025:1747688831 2025-05-21 01:42:10
CentOS Stream 8 ELS kernel 4.18.0 7.1 HIGH Released CLSA-2025:1747688581 2025-05-21 01:42:07
CloudLinux 6 ELS kernel 2.6.32 7.1 HIGH Ignored 2025-05-23 00:23:55
CloudLinux 7 ELS kernel 3.10.0 7.1 HIGH Ignored 2025-05-23 00:23:54
Oracle Linux 6 ELS kernel 2.6.32 7.1 HIGH Released CLSA-2025:1748365686 2025-05-28 00:30:40
Total: 16