Out-of-Bounds Read Vulnerability in Linux Kernel USB Networking Component
CVE-2025-21743
What is CVE-2025-21743?
A vulnerability exists in the USB networking component of the Linux kernel, specifically in the ipheth driver, where improper handling of the datagram index and length could result in an out-of-bounds (OoB) read. This issue arises if the sum of the datagram index and length exceeds the maximum value for a 16-bit unsigned integer. To mitigate the risk, appropriate checks have been implemented ensuring that the datagram index remains within safe limits relative to the actual length of the USB request.

Human OS v1.0:
Ageing Is an Unpatched Zero-Day Vulnerability.
Remediate biological technical debt. Prime Ageing uses 95% high-purity SIRT6 activation to maintain genomic integrity and bolster systemic resilience.
Affected Version(s)
Linux a2d274c62e44b1995c170595db3865c6fe701226 < 18bf6f5cce3172cb303c3f0551aa9443d5ed74f8
Linux a2d274c62e44b1995c170595db3865c6fe701226
Linux a2d274c62e44b1995c170595db3865c6fe701226
References
CVSS V3.1
Timeline
Vulnerability published
Vulnerability Reserved