{"id":"CVE-2025-21791","summary":"vrf: use RCU protection in l3mdev_l3_out()","details":"In the Linux kernel, the following vulnerability has been resolved:\n\nvrf: use RCU protection in l3mdev_l3_out()\n\nl3mdev_l3_out() can be called without RCU being held:\n\nraw_sendmsg()\n ip_push_pending_frames()\n  ip_send_skb()\n   ip_local_out()\n    __ip_local_out()\n     l3mdev_ip_out()\n\nAdd rcu_read_lock() / rcu_read_unlock() pair to avoid\na potential UAF.","modified":"2026-04-02T12:45:14.133236Z","published":"2025-02-27T02:18:29.014Z","related":["ALSA-2025:20095","ALSA-2025:20518","SUSE-SU-2025:01620-1","SUSE-SU-2025:01627-1","SUSE-SU-2025:01633-1","SUSE-SU-2025:01640-1","SUSE-SU-2025:01919-1","SUSE-SU-2025:01967-1","SUSE-SU-2025:03465-1","SUSE-SU-2025:03468-1","SUSE-SU-2025:03469-1","SUSE-SU-2025:03472-1","SUSE-SU-2025:03475-1","SUSE-SU-2025:03476-1","SUSE-SU-2025:03482-1","SUSE-SU-2025:03494-1","SUSE-SU-2025:03496-1","SUSE-SU-2025:03503-1","SUSE-SU-2025:03504-1","SUSE-SU-2025:03514-1","SUSE-SU-2025:03528-1","SUSE-SU-2025:03529-1","SUSE-SU-2025:03538-1","SUSE-SU-2025:03539-1","SUSE-SU-2025:03541-1","SUSE-SU-2025:03543-1","SUSE-SU-2025:03548-1","SUSE-SU-2025:03553-1","SUSE-SU-2025:03554-1","SUSE-SU-2025:03555-1","SUSE-SU-2025:03557-1","SUSE-SU-2025:03559-1","SUSE-SU-2025:03563-1","SUSE-SU-2025:03566-1","SUSE-SU-2025:03569-1","SUSE-SU-2025:03571-1","SUSE-SU-2025:03577-1","SUSE-SU-2025:03578-1","SUSE-SU-2025:03580-1","SUSE-SU-2025:1177-1","SUSE-SU-2025:1178-1","SUSE-SU-2025:1180-1","SUSE-SU-2025:1293-1","SUSE-SU-2025:1573-1","SUSE-SU-2025:1574-1","SUSE-SU-2025:20190-1","SUSE-SU-2025:20192-1","SUSE-SU-2025:20260-1","SUSE-SU-2025:20270-1","SUSE-SU-2025:20806-1","SUSE-SU-2025:20807-1","SUSE-SU-2025:20808-1","SUSE-SU-2025:20813-1","SUSE-SU-2025:20814-1","SUSE-SU-2025:20819-1","SUSE-SU-2025:20826-1","SUSE-SU-2025:20827-1","SUSE-SU-2025:20832-1","SUSE-SU-2025:20833-1","SUSE-SU-2025:20834-1","SUSE-SU-2025:20835-1","SUSE-SU-2025:20840-1","SUSE-SU-2025:20841-1","SUSE-SU-2025:4123-1","USN-7521-2"],"database_specific":{"osv_generated_from":"https://github.com/CVEProject/cvelistV5/tree/main/cves/2025/21xxx/CVE-2025-21791.json","cna_assigner":"Linux"},"references":[{"type":"WEB","url":"https://git.kernel.org/stable/c/022cac1c693add610ae76ede03adf4d9d5a2cf21"},{"type":"WEB","url":"https://git.kernel.org/stable/c/20a3489b396764cc9376e32a9172bee26a89dc3b"},{"type":"WEB","url":"https://git.kernel.org/stable/c/5bb4228c32261d06e4fbece37ec3828bcc005b6b"},{"type":"WEB","url":"https://git.kernel.org/stable/c/6ccaa5797f5362a2aad6baa6ddaf4715ac2dd51e"},{"type":"WEB","url":"https://git.kernel.org/stable/c/6d0ce46a93135d96b7fa075a94a88fe0da8e8773"},{"type":"WEB","url":"https://git.kernel.org/stable/c/7b81425b517accefd46bee854d94954f5c57e019"},{"type":"WEB","url":"https://git.kernel.org/stable/c/c40cb5c03e37552d6eff963187109e2c3f78ef6f"},{"type":"WEB","url":"https://git.kernel.org/stable/c/c7574740be8ce68a57d0aece24987b9be2114c3c"},{"type":"WEB","url":"https://lists.debian.org/debian-lts-announce/2025/03/msg00028.html"},{"type":"WEB","url":"https://lists.debian.org/debian-lts-announce/2025/05/msg00030.html"},{"type":"ADVISORY","url":"https://github.com/CVEProject/cvelistV5/tree/main/cves/2025/21xxx/CVE-2025-21791.json"},{"type":"ADVISORY","url":"https://nvd.nist.gov/vuln/detail/CVE-2025-21791"},{"type":"PACKAGE","url":"https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git"}],"affected":[{"ranges":[{"type":"GIT","repo":"https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git","events":[{"introduced":"a8e3e1a9f02094145580ea7920c6a1d9aabd5539"},{"fixed":"6ccaa5797f5362a2aad6baa6ddaf4715ac2dd51e"},{"fixed":"20a3489b396764cc9376e32a9172bee26a89dc3b"},{"fixed":"5bb4228c32261d06e4fbece37ec3828bcc005b6b"},{"fixed":"c7574740be8ce68a57d0aece24987b9be2114c3c"},{"fixed":"c40cb5c03e37552d6eff963187109e2c3f78ef6f"},{"fixed":"022cac1c693add610ae76ede03adf4d9d5a2cf21"},{"fixed":"7b81425b517accefd46bee854d94954f5c57e019"},{"fixed":"6d0ce46a93135d96b7fa075a94a88fe0da8e8773"}]}],"database_specific":{"source":"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2025-21791.json"}}],"schema_version":"1.7.5","severity":[{"type":"CVSS_V3","score":"CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H"}]}