[{"data":1,"prerenderedAt":-1},["ShallowReactive",2],{"repo-stars":3,"vuln-CVE-2025-22121":6},{"stargazers_count":4,"fetched_at":5},7,"2026-06-04T08:53:30.047Z",{"id":7,"descriptions":8,"cisa":9,"weaknesses":10,"exploits":23,"aliases":24,"duplicate_of":9,"upstream":25,"downstream":26,"duplicates":119,"related":120,"reserved_at":9,"published_at":134,"modified_at":135,"state":136,"summary":137,"references_raw":146,"kevs":177,"epss":178,"epss_history":181,"metrics":452,"affected":458},"CVE-2025-22121","In the Linux kernel, the following vulnerability has been resolved:\n\next4: fix out-of-bound read in ext4_xattr_inode_dec_ref_all()\n\nThere's issue as follows:\nBUG: KASAN: use-after-free in ext4_xattr_inode_dec_ref_all+0x6ff/0x790\nRead of size 4 at addr ffff88807b003000 by task syz-executor.0/15172\n\nCPU: 3 PID: 15172 Comm: syz-executor.0\nCall Trace:\n __dump_stack lib/dump_stack.c:82 [inline]\n dump_stack+0xbe/0xfd lib/dump_stack.c:123\n print_address_description.constprop.0+0x1e/0x280 mm/kasan/report.c:400\n __kasan_report.cold+0x6c/0x84 mm/kasan/report.c:560\n kasan_report+0x3a/0x50 mm/kasan/report.c:585\n ext4_xattr_inode_dec_ref_all+0x6ff/0x790 fs/ext4/xattr.c:1137\n ext4_xattr_delete_inode+0x4c7/0xda0 fs/ext4/xattr.c:2896\n ext4_evict_inode+0xb3b/0x1670 fs/ext4/inode.c:323\n evict+0x39f/0x880 fs/inode.c:622\n iput_final fs/inode.c:1746 [inline]\n iput fs/inode.c:1772 [inline]\n iput+0x525/0x6c0 fs/inode.c:1758\n ext4_orphan_cleanup fs/ext4/super.c:3298 [inline]\n ext4_fill_super+0x8c57/0xba40 fs/ext4/super.c:5300\n mount_bdev+0x355/0x410 fs/super.c:1446\n legacy_get_tree+0xfe/0x220 fs/fs_context.c:611\n vfs_get_tree+0x8d/0x2f0 fs/super.c:1576\n do_new_mount fs/namespace.c:2983 [inline]\n path_mount+0x119a/0x1ad0 fs/namespace.c:3316\n do_mount+0xfc/0x110 fs/namespace.c:3329\n __do_sys_mount fs/namespace.c:3540 [inline]\n __se_sys_mount+0x219/0x2e0 fs/namespace.c:3514\n do_syscall_64+0x33/0x40 arch/x86/entry/common.c:46\n entry_SYSCALL_64_after_hwframe+0x67/0xd1\n\nMemory state around the buggy address:\n ffff88807b002f00: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00\n ffff88807b002f80: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00\n>ffff88807b003000: ff ff ff ff ff ff ff ff ff ff ff ff ff ff ff ff\n                   ^\n ffff88807b003080: ff ff ff ff ff ff ff ff ff ff ff ff ff ff ff ff\n ffff88807b003100: ff ff ff ff ff ff ff ff ff ff ff ff ff ff ff ff\n\nAbove issue happens as ext4_xattr_delete_inode() isn't check xattr\nis valid if xattr is in inode.\nTo solve above issue call xattr_check_inode() check if xattr if valid\nin inode. In fact, we can directly verify in ext4_iget_extra_inode(),\nso that there is no divergent verification.",null,[11],{"_key":12,"id":12,"name":13,"description":14,"type":15,"status":16,"abstraction":17,"likelihood_of_exploit":9,"capec":18},"CWE-125","Out-of-bounds Read","The product reads data past the end, or before the beginning, of the intended buffer.","weakness","Draft","Base",[19],{"id":20,"name":21,"techniques":22},"CAPEC-540","Overread Buffers",[],[],[],[],[27,29,31,33,35,37,39,41,43,45,47,49,51,53,55,57,59,61,63,65,67,69,71,73,75,77,79,81,83,85,87,89,91,93,95,97,99,101,103,105,107,109,111,113,115,117],{"_key":28},"SUSE-SU-2025:01919-1",{"_key":30},"SUSE-SU-2025:01951-1",{"_key":32},"SUSE-SU-2025:01967-1",{"_key":34},"SUSE-SU-2025:01982-1",{"_key":36},"USN-7594-1",{"_key":38},"USN-7594-2",{"_key":40},"USN-7594-3",{"_key":42},"SUSE-SU-2025:01707-1",{"_key":44},"SUSE-SU-2025:01964-1",{"_key":46},"DLA-4476-1",{"_key":48},"DLA-4475-1",{"_key":50},"DSA-6127-1",{"_key":52},"RHSA-2025:10829",{"_key":54},"RHSA-2025:10830",{"_key":56},"RHSA-2025:11245",{"_key":58},"RHSA-2025:11855",{"_key":60},"RHSA-2025:11861",{"_key":62},"RHSA-2025:11571",{"_key":64},"RHSA-2025:11572",{"_key":66},"SUSE-SU-2025:20343-1",{"_key":68},"SUSE-SU-2025:20344-1",{"_key":70},"SUSE-SU-2025:20354-1",{"_key":72},"SUSE-SU-2025:20355-1",{"_key":74},"SUSE-SU-2025:01614-1",{"_key":76},"DEBIAN-CVE-2025-22121",{"_key":78},"USN-8095-1",{"_key":80},"USN-8095-2",{"_key":82},"USN-8095-3",{"_key":84},"USN-8095-4",{"_key":86},"USN-8095-5",{"_key":88},"USN-8100-1",{"_key":90},"USN-8125-1",{"_key":92},"USN-8165-1",{"_key":94},"USN-8096-1",{"_key":96},"USN-8096-2",{"_key":98},"USN-8096-3",{"_key":100},"USN-8096-4",{"_key":102},"USN-8096-5",{"_key":104},"USN-8116-1",{"_key":106},"USN-8141-1",{"_key":108},"USN-8163-1",{"_key":110},"USN-8163-2",{"_key":112},"USN-8126-1",{"_key":114},"USN-8243-1",{"_key":116},"UBUNTU-CVE-2025-22121",{"_key":118},"USN-8261-1",[],[121,122,123,124,125,126,127,128,129,130,131,132],{"_key":28},{"_key":30},{"_key":32},{"_key":34},{"_key":42},{"_key":44},{"_key":66},{"_key":68},{"_key":70},{"_key":72},{"_key":74},{"_key":133},"CGA-RVFM-56C9-H969","2025-04-16T14:13:05.894Z","2026-05-11T21:13:22.557Z","Modified",{"cisa_kev":138,"cisa_ransomware":138,"cisa_vendor":9,"epss_severity":139,"epss_score":140,"severity":141,"severity_score":142,"severity_version":143,"severity_source":144,"severity_vector":145,"severity_status":136},false,"low",0.00019,"high",7.1,"v3.1","nvd","CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:H",[147,152,156,160,164,168,173],{"url":148,"sources":149,"tags":151},"https://git.kernel.org/stable/c/27202452b0bc942fdc3db72a44c4dcdab96d5b56",[150,144],"cve.org",[],{"url":153,"sources":154,"tags":155},"https://git.kernel.org/stable/c/b374e9ecc92aaa7fb2ab221ee3ff5451118ab566",[150,144],[],{"url":157,"sources":158,"tags":159},"https://git.kernel.org/stable/c/c000a8a9b5343a5ef867df173c6349672dacbd0f",[150,144],[],{"url":161,"sources":162,"tags":163},"https://git.kernel.org/stable/c/3c591353956ffcace2cc74d09930774afed60619",[150,144],[],{"url":165,"sources":166,"tags":167},"https://git.kernel.org/stable/c/098927a13fd918bd7c64c2de905350a1ad7b4a3a",[150,144],[],{"url":169,"sources":170,"tags":171},"https://git.kernel.org/stable/c/0c8fbb6ffb3c8f5164572ca88e4ccb6cd6a41ca8",[150,144],[172],"Patch",{"url":174,"sources":175,"tags":176},"https://git.kernel.org/stable/c/5701875f9609b000d91351eaa6bfd97fe2f157f4",[150,144],[172],[],{"date":179,"score":140,"percentile":180},"2026-06-03",0.05513,[182,186,189,192,195,198,201,205,208,211,214,217,220,223,225,229,232,235,238,241,244,247,250,253,256,259,262,265,268,271,274,277,280,283,286,289,292,295,298,300,303,306,308,311,314,317,320,323,326,329,332,334,337,339,342,345,348,351,355,358,361,364,367,370,373,376,379,382,386,389,393,396,399,402,405,408,411,414,417,420,423,426,429,432,435,438,441,444,447,449],{"date":183,"score":184,"percentile":185},"2025-11-04",0.00018,0.03356,{"date":187,"score":184,"percentile":188},"2025-11-05",0.03378,{"date":190,"score":184,"percentile":191},"2025-11-06",0.0341,{"date":193,"score":184,"percentile":194},"2025-11-07",0.03413,{"date":196,"score":184,"percentile":197},"2025-11-08",0.03415,{"date":199,"score":184,"percentile":200},"2025-11-09",0.0342,{"date":202,"score":203,"percentile":204},"2025-11-10",0.00021,0.04171,{"date":206,"score":203,"percentile":207},"2025-11-11",0.04206,{"date":209,"score":203,"percentile":210},"2025-11-12",0.04234,{"date":212,"score":203,"percentile":213},"2025-11-13",0.04267,{"date":215,"score":203,"percentile":216},"2025-11-14",0.04275,{"date":218,"score":203,"percentile":219},"2025-11-15",0.04312,{"date":221,"score":203,"percentile":222},"2025-11-16",0.04319,{"date":224,"score":203,"percentile":219},"2025-11-17",{"date":226,"score":227,"percentile":228},"2025-11-18",0.00032,0.04901,{"date":230,"score":227,"percentile":231},"2025-11-19",0.0494,{"date":233,"score":227,"percentile":234},"2025-11-20",0.04996,{"date":236,"score":203,"percentile":237},"2025-11-21",0.04353,{"date":239,"score":203,"percentile":240},"2025-11-22",0.0436,{"date":242,"score":203,"percentile":243},"2025-11-23",0.04357,{"date":245,"score":140,"percentile":246},"2025-11-24",0.03715,{"date":248,"score":140,"percentile":249},"2025-11-25",0.03707,{"date":251,"score":140,"percentile":252},"2025-11-26",0.03736,{"date":254,"score":140,"percentile":255},"2025-11-27",0.03751,{"date":257,"score":140,"percentile":258},"2025-11-28",0.03752,{"date":260,"score":140,"percentile":261},"2025-11-29",0.03794,{"date":263,"score":140,"percentile":264},"2025-11-30",0.03806,{"date":266,"score":140,"percentile":267},"2025-12-01",0.03904,{"date":269,"score":140,"percentile":270},"2025-12-02",0.03922,{"date":272,"score":140,"percentile":273},"2025-12-03",0.0393,{"date":275,"score":140,"percentile":276},"2025-12-04",0.03874,{"date":278,"score":140,"percentile":279},"2025-12-05",0.03936,{"date":281,"score":140,"percentile":282},"2025-12-06",0.03953,{"date":284,"score":140,"percentile":285},"2025-12-07",0.03956,{"date":287,"score":140,"percentile":288},"2025-12-08",0.03966,{"date":290,"score":140,"percentile":291},"2025-12-09",0.04019,{"date":293,"score":140,"percentile":294},"2025-12-10",0.04056,{"date":296,"score":140,"percentile":297},"2025-12-11",0.04044,{"date":299,"score":140,"percentile":294},"2025-12-12",{"date":301,"score":140,"percentile":302},"2025-12-13",0.04082,{"date":304,"score":140,"percentile":305},"2025-12-14",0.04066,{"date":307,"score":140,"percentile":291},"2025-12-15",{"date":309,"score":140,"percentile":310},"2025-12-16",0.04032,{"date":312,"score":140,"percentile":313},"2025-12-17",0.04085,{"date":315,"score":140,"percentile":316},"2025-12-18",0.04116,{"date":318,"score":140,"percentile":319},"2025-12-19",0.04096,{"date":321,"score":140,"percentile":322},"2025-12-20",0.04231,{"date":324,"score":140,"percentile":325},"2025-12-21",0.04257,{"date":327,"score":140,"percentile":328},"2025-12-22",0.04205,{"date":330,"score":140,"percentile":331},"2025-12-23",0.04213,{"date":333,"score":140,"percentile":210},"2025-12-24",{"date":335,"score":140,"percentile":336},"2025-12-25",0.04277,{"date":338,"score":140,"percentile":336},"2025-12-26",{"date":340,"score":140,"percentile":341},"2025-12-27",0.04282,{"date":343,"score":140,"percentile":344},"2025-12-28",0.04279,{"date":346,"score":140,"percentile":347},"2025-12-29",0.04272,{"date":349,"score":140,"percentile":350},"2025-12-30",0.04208,{"date":352,"score":353,"percentile":354},"2025-12-31",0.00023,0.05551,{"date":356,"score":353,"percentile":357},"2026-01-01",0.05619,{"date":359,"score":353,"percentile":360},"2026-01-02",0.05613,{"date":362,"score":353,"percentile":363},"2026-01-03",0.05575,{"date":365,"score":353,"percentile":366},"2026-01-04",0.05484,{"date":368,"score":353,"percentile":369},"2026-01-05",0.05434,{"date":371,"score":353,"percentile":372},"2026-01-06",0.0543,{"date":374,"score":353,"percentile":375},"2026-01-07",0.0545,{"date":377,"score":353,"percentile":378},"2026-01-08",0.05512,{"date":380,"score":353,"percentile":381},"2026-01-09",0.05514,{"date":383,"score":384,"percentile":385},"2026-01-10",0.00026,0.06504,{"date":387,"score":384,"percentile":388},"2026-01-11",0.06497,{"date":390,"score":391,"percentile":392},"2026-01-12",0.00033,0.09357,{"date":394,"score":391,"percentile":395},"2026-01-13",0.09327,{"date":397,"score":391,"percentile":398},"2026-01-14",0.09381,{"date":400,"score":391,"percentile":401},"2026-01-15",0.09392,{"date":403,"score":391,"percentile":404},"2026-01-16",0.09433,{"date":406,"score":391,"percentile":407},"2026-01-17",0.09442,{"date":409,"score":227,"percentile":410},"2026-01-18",0.08786,{"date":412,"score":227,"percentile":413},"2026-01-19",0.08739,{"date":415,"score":227,"percentile":416},"2026-01-20",0.08734,{"date":418,"score":227,"percentile":419},"2026-01-21",0.08718,{"date":421,"score":227,"percentile":422},"2026-01-22",0.0869,{"date":424,"score":227,"percentile":425},"2026-01-23",0.08782,{"date":427,"score":227,"percentile":428},"2026-01-24",0.08851,{"date":430,"score":227,"percentile":431},"2026-01-25",0.08817,{"date":433,"score":227,"percentile":434},"2026-01-26",0.08781,{"date":436,"score":227,"percentile":437},"2026-01-27",0.08771,{"date":439,"score":227,"percentile":440},"2026-01-28",0.08759,{"date":442,"score":227,"percentile":443},"2026-01-29",0.08741,{"date":445,"score":227,"percentile":446},"2026-01-30",0.08751,{"date":448,"score":227,"percentile":434},"2026-01-31",{"date":450,"score":227,"percentile":451},"2026-02-01",0.08808,[453],{"source":144,"cvss_v2_0":9,"cvss_v3_0":9,"cvss_v3_1":454,"cvss_v4_0":9},{"baseScore":142,"baseSeverity":455,"vectorString":145,"impactScore":456,"exploitabilityScore":457},"HIGH",8.7,4.6,[459,491],{"ecosystem":9,"name":460,"vendor":461,"product":461,"cpe_part":462,"purl_type":9,"purl_namespace":9,"purl_name":9,"source":9,"versions":463},"Linux","linux","a",[464,471,474,477,480,483,486,489],{"version":465,"is_range":466,"range_type":150,"version_start":467,"version_start_type":468,"version_end":469,"version_end_type":470,"fixed_in":9},">= e50e5129f384ae282adebfb561189cdb19b81cee, \u003C 27202452b0bc942fdc3db72a44c4dcdab96d5b56",true,"e50e5129f384ae282adebfb561189cdb19b81cee","including","27202452b0bc942fdc3db72a44c4dcdab96d5b56","excluding",{"version":472,"is_range":466,"range_type":150,"version_start":467,"version_start_type":468,"version_end":473,"version_end_type":470,"fixed_in":9},">= e50e5129f384ae282adebfb561189cdb19b81cee, \u003C b374e9ecc92aaa7fb2ab221ee3ff5451118ab566","b374e9ecc92aaa7fb2ab221ee3ff5451118ab566",{"version":475,"is_range":466,"range_type":150,"version_start":467,"version_start_type":468,"version_end":476,"version_end_type":470,"fixed_in":9},">= e50e5129f384ae282adebfb561189cdb19b81cee, \u003C c000a8a9b5343a5ef867df173c6349672dacbd0f","c000a8a9b5343a5ef867df173c6349672dacbd0f",{"version":478,"is_range":466,"range_type":150,"version_start":467,"version_start_type":468,"version_end":479,"version_end_type":470,"fixed_in":9},">= e50e5129f384ae282adebfb561189cdb19b81cee, \u003C 3c591353956ffcace2cc74d09930774afed60619","3c591353956ffcace2cc74d09930774afed60619",{"version":481,"is_range":466,"range_type":150,"version_start":467,"version_start_type":468,"version_end":482,"version_end_type":470,"fixed_in":9},">= e50e5129f384ae282adebfb561189cdb19b81cee, \u003C 098927a13fd918bd7c64c2de905350a1ad7b4a3a","098927a13fd918bd7c64c2de905350a1ad7b4a3a",{"version":484,"is_range":466,"range_type":150,"version_start":467,"version_start_type":468,"version_end":485,"version_end_type":470,"fixed_in":9},">= e50e5129f384ae282adebfb561189cdb19b81cee, \u003C 0c8fbb6ffb3c8f5164572ca88e4ccb6cd6a41ca8","0c8fbb6ffb3c8f5164572ca88e4ccb6cd6a41ca8",{"version":487,"is_range":466,"range_type":150,"version_start":467,"version_start_type":468,"version_end":488,"version_end_type":470,"fixed_in":9},">= e50e5129f384ae282adebfb561189cdb19b81cee, \u003C 5701875f9609b000d91351eaa6bfd97fe2f157f4","5701875f9609b000d91351eaa6bfd97fe2f157f4",{"version":490,"is_range":138,"range_type":150,"version_start":490,"version_start_type":468,"version_end":490,"version_end_type":468,"fixed_in":9},"4.13",{"ecosystem":9,"name":492,"vendor":461,"product":493,"cpe_part":494,"purl_type":9,"purl_namespace":9,"purl_name":9,"source":9,"versions":495},"linux kernel","linux_kernel","o",[496],{"version":497,"is_range":466,"range_type":498,"version_start":490,"version_start_type":468,"version_end":499,"version_end_type":470,"fixed_in":9},"gte4.13_lt6.14.2","cpe","6.14.2"]