CVE-2025-21883
Linux Kernel vulnerability analysis and mitigation

Overview

A vulnerability in the Linux kernel's ice driver was discovered and disclosed on March 27, 2025. The issue occurs when iceenavfs() fails after calling icecreatevf_entries(), where it frees all VFs without removing them from the snapshot PF-VF mailbox list, leading to list corruption (NVD).

Technical details

The vulnerability manifests as a list corruption bug in the ice driver's VF management code. When iceenavfs() fails after icecreatevfentries(), it incorrectly handles the cleanup process, resulting in a corrupted list state. The issue can be reproduced by manipulating the eswitch mode and SRIOV settings. The bug manifests either as a listadd corruption where next->prev should be prev but was found to be NULL, or as a KASAN use-after-free report in _listaddvalidor_report (NVD, Snyk).

Impact

The vulnerability results in list corruption which can lead to system instability and potential denial of service. According to Red Hat's assessment, the vulnerability has a CVSS v3.1 base score of 5.5, indicating a medium severity impact with high availability impact but no loss of confidentiality or integrity (Red Hat).

Mitigation and workarounds

The vulnerability has been resolved in the Linux kernel through a fix that moves the VF removal operation to icefreevfentries(), which is called in various places where VFs are being removed, including icefree_vfs() itself (NVD).

Additional resources


SourceThis report was generated using AI

Related Linux Kernel vulnerabilities:

CVE ID

Severity

Score

Technologies

Component name

CISA KEV exploit

Has fix

Published date

CVE-2025-40343MEDIUM6.4
  • Linux KernelLinux Kernel
  • linux-riscv
NoYesDec 09, 2025
CVE-2025-40342MEDIUM6.4
  • Linux KernelLinux Kernel
  • linux-azure-5.4
NoYesDec 09, 2025
CVE-2025-40341MEDIUM5.1
  • Linux KernelLinux Kernel
  • kernel-debug-uki-virt-addons
NoYesDec 09, 2025
CVE-2025-40345N/AN/A
  • Linux KernelLinux Kernel
  • bpftool
NoYesDec 12, 2025
CVE-2025-40344N/AN/A
  • Linux KernelLinux Kernel
  • rtla
NoYesDec 09, 2025

Free Vulnerability Assessment

Benchmark your Cloud Security Posture

Evaluate your cloud security practices across 9 security domains to benchmark your risk level and identify gaps in your defenses.

Request assessment

Get a personalized demo

Ready to see Wiz in action?

"Best User Experience I have ever seen, provides full visibility to cloud workloads."
David EstlickCISO
"Wiz provides a single pane of glass to see what is going on in our cloud environments."
Adam FletcherChief Security Officer
"We know that if Wiz identifies something as critical, it actually is."
Greg PoniatowskiHead of Threat and Vulnerability Management