CVE-2025-21993

Source
https://nvd.nist.gov/vuln/detail/CVE-2025-21993
Import Source
https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2025-21993.json
JSON Data
https://api.test.osv.dev/v1/vulns/CVE-2025-21993
Downstream
Related
Published
2025-04-02T12:53:15.513Z
Modified
2025-11-28T02:34:16.501639Z
Severity
  • 7.1 (High) CVSS_V3 - CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:H CVSS Calculator
Summary
iscsi_ibft: Fix UBSAN shift-out-of-bounds warning in ibft_attr_show_nic()
Details

In the Linux kernel, the following vulnerability has been resolved:

iscsiibft: Fix UBSAN shift-out-of-bounds warning in ibftattrshownic()

When performing an iSCSI boot using IPv6, iscsistart still reads the /sys/firmware/ibft/ethernetX/subnet-mask entry. Since the IPv6 prefix length is 64, this causes the shift exponent to become negative, triggering a UBSAN warning. As the concept of a subnet mask does not apply to IPv6, the value is set to ~0 to suppress the warning message.

Database specific
{
    "cna_assigner": "Linux",
    "osv_generated_from": "https://github.com/CVEProject/cvelistV5/tree/main/cves/2025/21xxx/CVE-2025-21993.json"
}
References

Affected packages

Git / git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git

Affected ranges

Type
GIT
Repo
https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git
Events
Introduced
1da177e4c3f41524e886b7f1b8a0c1fc7321cac2
Fixed
a858cd58dea06cf85b142673deea8c5d87f11e70
Fixed
f763c82db8166e28f45b7cc4a5398a7859665940
Fixed
b388e185bfad32bfed6a97a6817f74ca00a4318f
Fixed
9bfa80c8aa4e06dff55a953c3fffbfc68a3a3b1c
Fixed
2d1eef248107bdf3d5a69d0fde04c30a79a7bf5d
Fixed
b253660fac5e0e9080d2c95e3a029e1898d49afb
Fixed
c1c6e527470e5eab0b2d57bd073530fbace39eab
Fixed
07e0d99a2f701123ad3104c0f1a1e66bce74d6e5

Linux / Kernel

Package

Name
Kernel

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
5.4.292
Type
ECOSYSTEM
Events
Introduced
5.5.0
Fixed
5.10.236
Type
ECOSYSTEM
Events
Introduced
5.11.0
Fixed
5.15.180
Type
ECOSYSTEM
Events
Introduced
5.16.0
Fixed
6.1.132
Type
ECOSYSTEM
Events
Introduced
6.2.0
Fixed
6.6.84
Type
ECOSYSTEM
Events
Introduced
6.7.0
Fixed
6.12.20
Type
ECOSYSTEM
Events
Introduced
6.13.0
Fixed
6.13.8