| { |
| "containers": { |
| "cna": { |
| "providerMetadata": { |
| "orgId": "f4215fc3-5b6b-47ff-a258-f7189bd81038" |
| }, |
| "descriptions": [ |
| { |
| "lang": "en", |
| "value": "In the Linux kernel, the following vulnerability has been resolved:\n\nneighbour: use RCU protection in __neigh_notify()\n\n__neigh_notify() can be called without RTNL or RCU protection.\n\nUse RCU protection to avoid potential UAF." |
| } |
| ], |
| "affected": [ |
| { |
| "product": "Linux", |
| "vendor": "Linux", |
| "defaultStatus": "unaffected", |
| "repo": "https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git", |
| "programFiles": [ |
| "net/core/neighbour.c" |
| ], |
| "versions": [ |
| { |
| "version": "426b5303eb435d98b9bee37a807be386bc2b3320", |
| "lessThan": "e1aed6be381bcd7f46d4ca9d7ef0f5f3d6a1be32", |
| "status": "affected", |
| "versionType": "git" |
| }, |
| { |
| "version": "426b5303eb435d98b9bee37a807be386bc2b3320", |
| "lessThan": "8666e9aab801328c1408a19fbf4070609dc0695a", |
| "status": "affected", |
| "versionType": "git" |
| }, |
| { |
| "version": "426b5303eb435d98b9bee37a807be386bc2b3320", |
| "lessThan": "40d8f2f2a373b6c294ffac394d2bb814b572ead1", |
| "status": "affected", |
| "versionType": "git" |
| }, |
| { |
| "version": "426b5303eb435d98b9bee37a807be386bc2b3320", |
| "lessThan": "784eb2376270e086f7db136d154b8404edacf97b", |
| "status": "affected", |
| "versionType": "git" |
| }, |
| { |
| "version": "426b5303eb435d98b9bee37a807be386bc2b3320", |
| "lessThan": "1cbb2aa90cd3fba15ad7efb5cdda28f3d1082379", |
| "status": "affected", |
| "versionType": "git" |
| }, |
| { |
| "version": "426b5303eb435d98b9bee37a807be386bc2b3320", |
| "lessThan": "cdd5c2a12ddad8a77ce1838ff9f29aa587de82df", |
| "status": "affected", |
| "versionType": "git" |
| }, |
| { |
| "version": "426b5303eb435d98b9bee37a807be386bc2b3320", |
| "lessThan": "559307d25235e24b5424778c7332451b6c741159", |
| "status": "affected", |
| "versionType": "git" |
| }, |
| { |
| "version": "426b5303eb435d98b9bee37a807be386bc2b3320", |
| "lessThan": "becbd5850c03ed33b232083dd66c6e38c0c0e569", |
| "status": "affected", |
| "versionType": "git" |
| } |
| ] |
| }, |
| { |
| "product": "Linux", |
| "vendor": "Linux", |
| "defaultStatus": "affected", |
| "repo": "https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git", |
| "programFiles": [ |
| "net/core/neighbour.c" |
| ], |
| "versions": [ |
| { |
| "version": "2.6.25", |
| "status": "affected" |
| }, |
| { |
| "version": "0", |
| "lessThan": "2.6.25", |
| "status": "unaffected", |
| "versionType": "semver" |
| }, |
| { |
| "version": "5.4.291", |
| "lessThanOrEqual": "5.4.*", |
| "status": "unaffected", |
| "versionType": "semver" |
| }, |
| { |
| "version": "5.10.235", |
| "lessThanOrEqual": "5.10.*", |
| "status": "unaffected", |
| "versionType": "semver" |
| }, |
| { |
| "version": "5.15.179", |
| "lessThanOrEqual": "5.15.*", |
| "status": "unaffected", |
| "versionType": "semver" |
| }, |
| { |
| "version": "6.1.129", |
| "lessThanOrEqual": "6.1.*", |
| "status": "unaffected", |
| "versionType": "semver" |
| }, |
| { |
| "version": "6.6.79", |
| "lessThanOrEqual": "6.6.*", |
| "status": "unaffected", |
| "versionType": "semver" |
| }, |
| { |
| "version": "6.12.16", |
| "lessThanOrEqual": "6.12.*", |
| "status": "unaffected", |
| "versionType": "semver" |
| }, |
| { |
| "version": "6.13.4", |
| "lessThanOrEqual": "6.13.*", |
| "status": "unaffected", |
| "versionType": "semver" |
| }, |
| { |
| "version": "6.14", |
| "lessThanOrEqual": "*", |
| "status": "unaffected", |
| "versionType": "original_commit_for_fix" |
| } |
| ] |
| } |
| ], |
| "cpeApplicability": [ |
| { |
| "nodes": [ |
| { |
| "operator": "OR", |
| "negate": false, |
| "cpeMatch": [ |
| { |
| "vulnerable": true, |
| "criteria": "cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*", |
| "versionStartIncluding": "2.6.25", |
| "versionEndExcluding": "5.4.291" |
| }, |
| { |
| "vulnerable": true, |
| "criteria": "cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*", |
| "versionStartIncluding": "2.6.25", |
| "versionEndExcluding": "5.10.235" |
| }, |
| { |
| "vulnerable": true, |
| "criteria": "cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*", |
| "versionStartIncluding": "2.6.25", |
| "versionEndExcluding": "5.15.179" |
| }, |
| { |
| "vulnerable": true, |
| "criteria": "cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*", |
| "versionStartIncluding": "2.6.25", |
| "versionEndExcluding": "6.1.129" |
| }, |
| { |
| "vulnerable": true, |
| "criteria": "cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*", |
| "versionStartIncluding": "2.6.25", |
| "versionEndExcluding": "6.6.79" |
| }, |
| { |
| "vulnerable": true, |
| "criteria": "cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*", |
| "versionStartIncluding": "2.6.25", |
| "versionEndExcluding": "6.12.16" |
| }, |
| { |
| "vulnerable": true, |
| "criteria": "cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*", |
| "versionStartIncluding": "2.6.25", |
| "versionEndExcluding": "6.13.4" |
| }, |
| { |
| "vulnerable": true, |
| "criteria": "cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*", |
| "versionStartIncluding": "2.6.25", |
| "versionEndExcluding": "6.14" |
| } |
| ] |
| } |
| ] |
| } |
| ], |
| "references": [ |
| { |
| "url": "https://git.kernel.org/stable/c/e1aed6be381bcd7f46d4ca9d7ef0f5f3d6a1be32" |
| }, |
| { |
| "url": "https://git.kernel.org/stable/c/8666e9aab801328c1408a19fbf4070609dc0695a" |
| }, |
| { |
| "url": "https://git.kernel.org/stable/c/40d8f2f2a373b6c294ffac394d2bb814b572ead1" |
| }, |
| { |
| "url": "https://git.kernel.org/stable/c/784eb2376270e086f7db136d154b8404edacf97b" |
| }, |
| { |
| "url": "https://git.kernel.org/stable/c/1cbb2aa90cd3fba15ad7efb5cdda28f3d1082379" |
| }, |
| { |
| "url": "https://git.kernel.org/stable/c/cdd5c2a12ddad8a77ce1838ff9f29aa587de82df" |
| }, |
| { |
| "url": "https://git.kernel.org/stable/c/559307d25235e24b5424778c7332451b6c741159" |
| }, |
| { |
| "url": "https://git.kernel.org/stable/c/becbd5850c03ed33b232083dd66c6e38c0c0e569" |
| } |
| ], |
| "title": "neighbour: use RCU protection in __neigh_notify()", |
| "x_generator": { |
| "engine": "bippy-1.2.0" |
| } |
| } |
| }, |
| "cveMetadata": { |
| "assignerOrgId": "f4215fc3-5b6b-47ff-a258-f7189bd81038", |
| "cveID": "CVE-2025-21763", |
| "requesterUserId": "gregkh@kernel.org", |
| "serial": "1", |
| "state": "PUBLISHED" |
| }, |
| "dataType": "CVE_RECORD", |
| "dataVersion": "5.0" |
| } |