CVE-2025-21667

In the Linux kernel, the following vulnerability has been resolved: iomap: avoid avoid truncating 64-bit offset to 32 bits on 32-bit kernels, iomap_write_delalloc_scan() was inadvertently using a 32-bit position due to folio_next_index() returning an unsigned long. This could lead to an infinite loop when writing to an xfs filesystem.
Configurations

Configuration 1 (hide)

OR cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*
cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*
cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*
cpe:2.3:o:linux:linux_kernel:6.13:rc1:*:*:*:*:*:*
cpe:2.3:o:linux:linux_kernel:6.13:rc2:*:*:*:*:*:*
cpe:2.3:o:linux:linux_kernel:6.13:rc3:*:*:*:*:*:*
cpe:2.3:o:linux:linux_kernel:6.13:rc4:*:*:*:*:*:*
cpe:2.3:o:linux:linux_kernel:6.13:rc5:*:*:*:*:*:*
cpe:2.3:o:linux:linux_kernel:6.13:rc6:*:*:*:*:*:*

History

03 Feb 2025, 20:00

Type Values Removed Values Added
CVSS v2 : unknown
v3 : unknown
v2 : unknown
v3 : 5.5
References () https://git.kernel.org/stable/c/402ce16421477e27f30b57d6d1a6dc248fa3a4e4 - () https://git.kernel.org/stable/c/402ce16421477e27f30b57d6d1a6dc248fa3a4e4 - Patch
References () https://git.kernel.org/stable/c/7ca4bd6b754913910151acce00be093f03642725 - () https://git.kernel.org/stable/c/7ca4bd6b754913910151acce00be093f03642725 - Patch
References () https://git.kernel.org/stable/c/91371922704c8d82049ef7c2ad974d0a2cd1174d - () https://git.kernel.org/stable/c/91371922704c8d82049ef7c2ad974d0a2cd1174d - Patch
References () https://git.kernel.org/stable/c/c13094b894de289514d84b8db56d1f2931a0bade - () https://git.kernel.org/stable/c/c13094b894de289514d84b8db56d1f2931a0bade - Patch
CWE CWE-835
CPE cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*
cpe:2.3:o:linux:linux_kernel:6.13:rc3:*:*:*:*:*:*
cpe:2.3:o:linux:linux_kernel:6.13:rc5:*:*:*:*:*:*
cpe:2.3:o:linux:linux_kernel:6.13:rc6:*:*:*:*:*:*
cpe:2.3:o:linux:linux_kernel:6.13:rc2:*:*:*:*:*:*
cpe:2.3:o:linux:linux_kernel:6.13:rc4:*:*:*:*:*:*
cpe:2.3:o:linux:linux_kernel:6.13:rc1:*:*:*:*:*:*
First Time Linux
Linux linux Kernel
Summary
  • (es) En el kernel de Linux, se ha resuelto la siguiente vulnerabilidad: iomap: para evitar truncar el desplazamiento de 64 bits a 32 bits en kernels de 32 bits, iomap_write_delalloc_scan() estaba usando inadvertidamente una posición de 32 bits debido a que folio_next_index() devolvía un unsigned long. Esto podría provocar un bucle infinito al escribir en un sistema de archivos xfs.

31 Jan 2025, 12:15

Type Values Removed Values Added
New CVE

Information

Published : 2025-01-31 12:15

Updated : 2025-02-03 20:00


NVD link : CVE-2025-21667

Mitre link : CVE-2025-21667

CVE.ORG link : CVE-2025-21667


JSON object : View

Products Affected

linux

  • linux_kernel
CWE
CWE-835

Loop with Unreachable Exit Condition ('Infinite Loop')