Predictive Vulnerability Intelligence.

Product

  • Product
  • Pricing
  • Documentation

Company

  • About
  • Partnerships
  • Blog
  • Support

Legal

  • Terms
  • Privacy
  • Data Licensing

© 2026 FAUCET Technologies LLC. All rights reserved.

CVE-2025-21734

21
FAUCET Score

CVE-2025-21734 is a memory issue within the Linux kernel's fastrpc driver, specifically affecting its handling of non-registered buffers. The vulnerability stems from an incorrect page size calculation that fails to account for memory offsets, potentially leading to the use of improper or out-of-bounds page sizes. This flaw has a CVSS score of 7.8 (High), indicating that a local attacker with low privileges could achieve high confidentiality, integrity, and availability impacts. There is currently no evidence of active exploitation, public exploit code (Metasploit, Nuclei, ExploitDB), or significant community discussion or media coverage surrounding this vulnerability.

Impacted Technologies

VendorProductVersion(s)CPE
>= 5.2, < 6.1.129CPE matchmatch criteria
cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*
>= 6.2, < 6.6.78CPE matchmatch criteria
cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*
>= 6.7, < 6.12.14CPE matchmatch criteria
cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*
>= 6.13, < 6.13.3CPE matchmatch criteria
cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*

CVSS Data

CVSS version used by this source: 3.1

7.8HIGH

CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H

Attack Vector
LOCAL
Attack Complexity
LOW
Privileges Required
LOW
User Interaction
NONE
Scope
UNCHANGED
Confidentiality Impact
HIGH
Integrity Impact
HIGH
Availability Impact
HIGH
Exploitability Score
1.8
Impact Score
5.9
CvssVersion
3.1

Exploit Intelligence

EPSS Score
0.20%
Probability of exploitation in next 30 days
EPSS Percentile
10.5%
Percentile rank of EPSS score among Peer Group
As of 2026-07-28
Model: v2026.06.15
This CVE's current EPSS score of 0.0020 is in the 38th percentile among its peer group of 17,070 CVEs.

Social Chatter

The average CVE in this peer group has 0.0 Twitter, 0.1 Reddit, 0.2 Bluesky, 0.1 Mastodon, and 0.2 GitHub mentions.

Media Mentions

No media coverage found for this CVE.

The average CVE in this peer group has 0.3 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.

Remediation

Vendor Advisories (2)

redhatCVE-2025-21734

kernel: misc: fastrpc: Fix copy buffer page size

Feb 27, 2025
microsoft2025-Feb/CVE-2025-21734Important

misc: fastrpc: Fix copy buffer page size

Feb 11, 2025

References

git.kernel.org / stable/c/24a79c6bc8de763f7c50f4f84f8b0c183bc25a51
Patch
git.kernel.org / stable/c/c0464bad0e85fcd5d47e4297d1e410097c979e55
Patch
git.kernel.org / stable/c/c3f7161123fcbdc64e90119ccce292d8b66281c4
Patch
git.kernel.org / stable/c/c56ba3ea8e3c9a69a992aad18f7a65e43e51d623
Patch
git.kernel.org / stable/c/e966eae72762ecfdbdb82627e2cda48845b9dd66
Patch
lists.debian.org / debian-lts-announce/2025/03/msg00028.html