Answer in brief
CVE-2025-21901 records a Unknown severity vulnerability in RDMA/bnxt_re: Add sanity checks on rdev validity. The current sources do not mark it as known exploited. The current feed maps Linux/Linux (generic), Linux/Linux (generic). Check affected ranges and fixed versions before updating.
Analysis pending evidence review
HOL Guard separates source facts from reviewed analysis. See the methodology.
A CVSS score is not reported in the current record. The current sources do not mark it as known exploited. Treat this as a source-backed prioritization signal, not a statement about your environment.
Analysis status
Analysis pending evidence review
Factual feed record only; HOL analysis is not approved for indexing. Read the methodology.
The current feed maps Linux/Linux (generic), Linux/Linux (generic). Check affected ranges and fixed versions before updating.
| Package | Affected range | Fixed version |
|---|---|---|
| Linux/Linuxgeneric | >=cc5b9b48d44756a87170f3901c6c2fd99e6b89b2 <aed1bc673907e3df372b317c10ff2f3582f8bf1a || >=cc5b9b48d44756a87170f3901c6c2fd99e6b89b2 <8cb0eef46d70a99c88c26a1addb7fd955242e0e6 || >=cc5b9b48d44756a87170f3901c6c2fd99e6b89b2 <f0df225d12fcb049429fb5bf5122afe143c2dd15 | aed1bc673907e3df372b317c10ff2f3582f8bf1a, 8cb0eef46d70a99c88c26a1addb7fd955242e0e6, f0df225d12fcb049429fb5bf5122afe143c2dd15 |
| Linux/Linuxgeneric | 6.12 | Not reported |
Published upstream
Apr 1, 2025
Evidence: source:cvelist:source_dates:source-dates:recordSource modified
Aug 5, 2026
Evidence: source:cvelist:source_dates:source-dates:recordFirst seen by HOL
Aug 5, 2026
In the Linux kernel, the following vulnerability has been resolved: RDMA/bnxt_re: Add sanity checks on rdev validity There is a possibility that ulp_irq_stop and ulp_irq_start callbacks will be called when the device is in detached state. This can cause a crash due to NULL pointer dereference as the rdev is already freed.
Quoted source text, attributed separately from HOL analysis.
Answer in brief
CVE-2025-21901 records a Unknown severity vulnerability in RDMA/bnxt_re: Add sanity checks on rdev validity. The current sources do not mark it as known exploited. The current feed maps Linux/Linux (generic), Linux/Linux (generic). Check affected ranges and fixed versions before updating.
Analysis pending evidence review
HOL Guard separates source facts from reviewed analysis. See the methodology.
A CVSS score is not reported in the current record. The current sources do not mark it as known exploited. Treat this as a source-backed prioritization signal, not a statement about your environment.
Analysis status
Analysis pending evidence review
Factual feed record only; HOL analysis is not approved for indexing. Read the methodology.
The current feed maps Linux/Linux (generic), Linux/Linux (generic). Check affected ranges and fixed versions before updating.
| Package | Affected range | Fixed version |
|---|---|---|
| Linux/Linuxgeneric | >=cc5b9b48d44756a87170f3901c6c2fd99e6b89b2 <aed1bc673907e3df372b317c10ff2f3582f8bf1a || >=cc5b9b48d44756a87170f3901c6c2fd99e6b89b2 <8cb0eef46d70a99c88c26a1addb7fd955242e0e6 || >=cc5b9b48d44756a87170f3901c6c2fd99e6b89b2 <f0df225d12fcb049429fb5bf5122afe143c2dd15 | aed1bc673907e3df372b317c10ff2f3582f8bf1a, 8cb0eef46d70a99c88c26a1addb7fd955242e0e6, f0df225d12fcb049429fb5bf5122afe143c2dd15 |
| Linux/Linuxgeneric | 6.12 | Not reported |
Published upstream
Apr 1, 2025
Evidence: source:cvelist:source_dates:source-dates:recordSource modified
Aug 5, 2026
Evidence: source:cvelist:source_dates:source-dates:recordFirst seen by HOL
Aug 5, 2026
In the Linux kernel, the following vulnerability has been resolved: RDMA/bnxt_re: Add sanity checks on rdev validity There is a possibility that ulp_irq_stop and ulp_irq_start callbacks will be called when the device is in detached state. This can cause a crash due to NULL pointer dereference as the rdev is already freed.
Quoted source text, attributed separately from HOL analysis.