AUGUST 4, 2026
Live Feed
Back to database
Case File

CVE-2025-21836

HIGH · CVSS 7.8 EPSS 0.25%

Source: NVD + CISA KEV + EPSS (historical backfill) · Published 2025-03-07 · Last synced 2026-08-04

CyberRota Analysis

This is a high severity vulnerability with a CVSS score of 7.8. It affects Linux.

CVE
CVE-2025-21836
Severity
HIGH
CVSS
7.8
EPSS
0.25%
Linux

Original NVD Description

In the Linux kernel, the following vulnerability has been resolved: io_uring/kbuf: reallocate buf lists on upgrade IORING_REGISTER_PBUF_RING can reuse an old struct io_buffer_list if it was created for legacy selected buffer and has been emptied. It violates the requirement that most of the field should stay stable after publish. Always reallocate it instead.

Related CVEs

Other vulnerabilities affecting the same vendor(s)