
Cloud Vulnerability DB
A community-led vulnerabilities database
CVE-2025-21641 is a vulnerability in the Linux kernel's MPTCP (Multipath TCP) implementation, specifically related to the blackhole timeout sysctl handling. The vulnerability was discovered in January 2025 and affects the Linux kernel's network subsystem (Debian Security).
The vulnerability stems from improper usage of current->nsproxy in the MPTCP sysctl blackhole timeout functionality. The issue occurs when accessing the network namespace through current->nsproxy, which can be NULL in certain cases, particularly when the current task is exiting. This can result in a null pointer dereference and subsequent system crash (Kernel Git).
When exploited, this vulnerability can lead to a system crash (Oops) due to null pointer dereference, particularly when using the acct(2) system call. This primarily affects system stability and availability (Kernel Git).
The issue has been fixed in Linux kernel versions 6.12.10-1 and later. The fix involves modifying the code to obtain the 'pernet' structure from the table->data using container_of() instead of accessing it through current->nsproxy (Debian Security, Kernel Git).
Source: This report was generated using AI
Free Vulnerability Assessment
Evaluate your cloud security practices across 9 security domains to benchmark your risk level and identify gaps in your defenses.
Get a personalized demo
"Best User Experience I have ever seen, provides full visibility to cloud workloads."
"Wiz provides a single pane of glass to see what is going on in our cloud environments."
"We know that if Wiz identifies something as critical, it actually is."