CVE-2025-21901: Linux Kernel
Medium severity, CVSS 5.5. EPSS: 0.2% chance of exploitation in the next 30 days.
In the Linux kernel, the following vulnerability has been resolved: RDMA/bnxt_re: Add sanity checks on rdev validity There is a possibility that ulp_irq_stop and ulp_irq_start callbacks will be called when the device is in detached state. This can cause a crash due to NULL pointer dereference as the rdev is already freed.
Affected products
- Linux Linux Kernel: from 6.12, before 6.12.18 (fixed in 6.12.18); from 6.13, before 6.13.6 (fixed in 6.13.6); version 6.14 only
Published 2025-04-01. Last modified 2026-07-30.