• Tenable
  • CVEs
  • Settings
    Links
    Tenable Cloud Tenable Community & Support Tenable University
    Severity
    Theme
  • Tenable
  • Plugins
  • Overview
  • Plugins Pipeline
  • Newest
  • Updated
  • Search
  • Nessus Families
  • WAS Families
  • NNM Families
  • Tenable OT Security Families
  • About Plugin Families
  • Release Notes
  • Audits
  • Overview
  • Newest
  • Updated
  • Search Audit Files
  • Search Items
  • References
  • Authorities
  • Documentation
  • Download All Audit Files
  • Indicators
  • Overview
  • Search
  • Indicators of Attack
  • Indicators of Exposure
  • Release Notes
  • CVEs
  • Overview
  • Newest
  • Updated
  • Search
  • Attack Path Techniques
  • Overview
  • Search
    • Links
    • Tenable Cloud
    • Tenable Community & Support
    • Tenable University
    • Settings
    • Severity
    • Theme
Detections
  • Plugins
  • Overview
  • Plugins Pipeline
  • Release Notes
  • Newest
  • Updated
  • Search
  • Nessus Families
  • WAS Families
  • NNM Families
  • Tenable OT Security Families
  • About Plugin Families
  • Audits
  • Overview
  • Newest
  • Updated
  • Search Audit Files
  • Search Items
  • References
  • Authorities
  • Documentation
  • Download All Audit Files
  • Indicators
  • Overview
  • Search
  • Indicators of Attack
  • Indicators of Exposure
  • Release Notes
Analytics
  • CVEs
  • Overview
  • Newest
  • Updated
  • Search
  • Attack Path Techniques
  • Overview
  • Search
  1. CVEs
  2. CVE-2025-21848
  1. CVEs

CVE-2025-21848

medium
  • Information
  • CPEs
  • Plugins

Description

In the Linux kernel, the following vulnerability has been resolved: nfp: bpf: Add check for nfp_app_ctrl_msg_alloc() Add check for the return value of nfp_app_ctrl_msg_alloc() in nfp_bpf_cmsg_alloc() to prevent null pointer dereference.

References

https://www.cisa.gov/news-events/ics-advisories/icsa-25-162-05

https://lists.debian.org/debian-lts-announce/2025/05/msg00045.html

https://lists.debian.org/debian-lts-announce/2025/05/msg00030.html

https://git.kernel.org/stable/c/e976ea6c5e1b005c64467cbf94a8577aae9c7d81

https://git.kernel.org/stable/c/d64c6ca420019712e194fe095b55f87363e22a9a

https://git.kernel.org/stable/c/bd97f60750bb581f07051f98e31dfda59d3a783b

https://git.kernel.org/stable/c/924b239f9704566e0d86abd894d2d64bd73c11eb

https://git.kernel.org/stable/c/897c32cd763fd11d0b6ed024c52f44d2475bb820

https://git.kernel.org/stable/c/878e7b11736e062514e58f3b445ff343e6705537

https://git.kernel.org/stable/c/29ccb1e4040da6ff02b7e64efaa2f8e6bf06020d

https://git.kernel.org/stable/c/1358d8e07afdf21d49ca6f00c56048442977e00a

Details

Source: Mitre, NVD

Published: 2025-03-12

Updated: 2025-11-03

Risk Information

CVSS v2

Base Score: 4.6

Vector: CVSS2#AV:L/AC:L/Au:S/C:N/I:N/A:C

Severity: Medium

CVSS v3

Base Score: 5.5

Vector: CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H

Severity: Medium

EPSS

EPSS: 0.00017

  • Tenable.com
  • Community & Support
  • Documentation
  • Education
  • © 2025 Tenable®, Inc. All Rights Reserved
  • Privacy Policy
  • Legal
  • 508 Compliance