CVE-2025-21741

Source
https://cve.org/CVERecord?id=CVE-2025-21741
Import Source
https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2025-21741.json
JSON Data
https://api.test.osv.dev/v1/vulns/CVE-2025-21741
Downstream
Related
Published
2025-02-27T02:12:15.715Z
Modified
2026-05-18T05:58:04.299030088Z
Severity
  • 7.1 (High) CVSS_V3 - CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:H CVSS Calculator
Summary
usbnet: ipheth: fix DPE OoB read
Details

In the Linux kernel, the following vulnerability has been resolved:

usbnet: ipheth: fix DPE OoB read

Fix an out-of-bounds DPE read, limit the number of processed DPEs to the amount that fits into the fixed-size NDP16 header.

Database specific
{
    "osv_generated_from": "https://github.com/CVEProject/cvelistV5/tree/main/cves/2025/21xxx/CVE-2025-21741.json",
    "cna_assigner": "Linux"
}
References

Affected packages

Git / git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git

Affected ranges

Type
GIT
Repo
https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git
Events
Introduced
a2d274c62e44b1995c170595db3865c6fe701226
Fixed
22475242ddb70e35c9148234be9a3aa9fb8efff9
Fixed
5835bf66c50ac2b85ed28b282c2456c3516ef0a6
Fixed
971b8c572559e52d32a2b82f2d9e0685439a0117
Fixed
ee591f2b281721171896117f9946fced31441418

Database specific

source
"https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2025-21741.json"

Linux / Kernel

Package

Name
Kernel

Affected ranges

Type
ECOSYSTEM
Events
Introduced
6.5.0
Fixed
6.6.78
Type
ECOSYSTEM
Events
Introduced
6.7.0
Fixed
6.12.14
Type
ECOSYSTEM
Events
Introduced
6.13.0
Fixed
6.13.3

Database specific

source
"https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2025-21741.json"