Predictive Vulnerability Intelligence.

Product

  • Product
  • Pricing
  • Documentation

Company

  • About
  • Partnerships
  • Blog
  • Support

Legal

  • Terms
  • Privacy
  • Data Licensing

© 2026 FAUCET Technologies LLC. All rights reserved.

CVE-2025-21702

23
FAUCET Score

CVE-2025-21702 is a high-severity vulnerability in the Linux kernel's networking subsystem, specifically impacting how queue lengths are managed within certain qdisc configurations. This flaw can create an inconsistent state between parent and child qdiscs, which can be leveraged for user-to-kernel privilege escalation. With a CVSS score of 7.0, exploitation requires local access and has high attack complexity. There is currently no public exploit code available, it is not known to be actively exploited, and community attention remains minimal.

Impacted Technologies

VendorProductVersion(s)CPE
>= 2.6.34, < 5.4.291CPE matchmatch criteria
cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*
>= 5.5, < 5.10.235CPE matchmatch criteria
cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*
>= 5.11, < 5.15.179CPE matchmatch criteria
cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*
>= 5.16, < 6.1.130CPE matchmatch criteria
cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*
>= 6.2, < 6.6.83CPE matchmatch criteria
cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*

CVSS Data

CVSS version used by this source: 3.1

7.8HIGH

CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H

Attack Vector
LOCAL
Attack Complexity
LOW
Privileges Required
LOW
User Interaction
NONE
Scope
UNCHANGED
Confidentiality Impact
HIGH
Integrity Impact
HIGH
Availability Impact
HIGH
Exploitability Score
1.8
Impact Score
5.9
CvssVersion
3.1

Exploit Intelligence

EPSS Score
0.27%
Probability of exploitation in next 30 days
EPSS Percentile
18.6%
Percentile rank of EPSS score among Peer Group
As of 2026-07-27
Model: v2026.06.15
This CVE's current EPSS score of 0.0027 is in the 50th percentile among its peer group of 1,525 CVEs.

Social Chatter

The average CVE in this peer group has 0.0 Twitter, 0.1 Reddit, 0.1 Bluesky, 0.1 Mastodon, and 0.2 GitHub mentions.

Media Mentions

No media coverage found for this CVE.

The average CVE in this peer group has 0.4 InfoSec Media, 0.1 Vendor Blog, and 0.0 Security Researcher mentions.

Remediation

Patch Available

Vendor Patches (9)

autodeskpatch availablevia llm_extracted
View patch
chainsafepatch availablevia llm_extracted
View patch
coollabspatch availablevia llm_extracted
View patch
falcopatch availablevia llm_extracted
View patch
freepbxpatch availablevia llm_extracted
View patch
honeywellpatch availablevia llm_extracted
View patch
redhatpatch availablevia redhat_api
Product: Red Hat Enterprise Linux 9Fixed in: kernel-0:5.14.0-611.5.1.el9_7
View patch
redhatpatch availablevia redhat_api
Product: Red Hat Enterprise Linux 10Fixed in: kernel-0:6.12.0-124.8.1.el10_1
View patch
redhatno patchvia redhat_api
Product: Red Hat Enterprise Linux 9Fixed in: kernel-rt

Vendor Advisories (7)

freepbxllm-freepbx-e54908c7967265f6CRITICAL

HP ThinPro 8.1 SP8 Security Updates

Oct 27, 2025
honeywellllm-honeywell-c82b5cfda9df97a3CRITICAL

HP ThinPro 8.1 SP8 Security Updates

Oct 27, 2025
autodeskllm-autodesk-c365b674a2ff5a3aCRITICAL

HP ThinPro 8.1 SP8 Security Updates

Oct 27, 2025
chainsafellm-chainsafe-cd2f97826e6b6bf6HIGH

Linux Kernel Privilege Escalation on Container-Optimized OS nodes (CVE-2025-21702)

May 22, 2025
coollabsllm-coollabs-647029ca173db111HIGH

Linux kernel privilege escalation on Container-Optimized OS nodes (CVE-2025-21702)

May 22, 2025
falcollm-falco-0d97d8e623ed2215HIGH

Linux kernel privilege escalation on Container-Optimized OS nodes

May 22, 2025
redhatCVE-2025-21702Moderate

kernel: pfifo_tail_enqueue: Drop new packet when sch->limit == 0

Feb 18, 2025

References

cert-portal.siemens.com / productcert/html/ssa-019113.html
cert-portal.siemens.com / productcert/html/ssa-082556.html
git.kernel.org / stable/c/020ecb76812a0526f4130ab5aeb6dc7c773e7ab9
Patch
git.kernel.org / stable/c/647cef20e649c576dff271e018d5d15d998b629d
Patch
git.kernel.org / stable/c/78285b53266d6d51fa4ff504a23df03852eba84e
Patch
git.kernel.org / stable/c/79a955ea4a2e5ddf4a36328959de0de496419888
Patch
git.kernel.org / stable/c/7a9723ec27aff5674f1fd4934608937f1d650980
Patch
git.kernel.org / stable/c/a56a6e8589a9b98d8171611fbcc1e45a15fd2455
Patch
git.kernel.org / stable/c/b6a079c3b6f95378f26e2aeda520cb3176f7067b
Patch
git.kernel.org / stable/c/e40cb34b7f247fe2e366fd192700d1b4f38196ca
Patch
lists.debian.org / debian-lts-announce/2025/05/msg00030.html
lists.debian.org / debian-lts-announce/2025/05/msg00045.html