CVE-2025-21846: acct: perform last write from workqueue
Published Mar 12, 2025
·Updated
acct: perform last write from workqueue
Affected Software
17 affected componentsFixes available
Linux Linux kernel
Microsoft azl3 kernel 6.6.82.1-1
Microsoft azl3 kernel 6.6.78.1-3
Microsoft cbl2 kernel 5.15.182.1-1
Microsoft cbl2 kernel 5.15.182.1-1
Microsoft cbl2 kernel 5.15.179.1-1
Linux Linux kernel>=2.6.12<6.1.130
Linux Linux kernel>=6.2<6.6.80
Linux Linux kernel>=6.7<6.12.17
Linux Linux kernel>=6.13<6.13.5
Linux Linux kernel=6.14-rc1
Linux Linux kernel=6.14-rc2
Linux Linux kernel=6.14-rc3
IBM Verify Identity Access<=11.0 - 11.0.2
IBM Security Verify Access<=10.0 - 10.0.9.1
IBM Verify Identity Access Container<=11.0 - 11.0.2
IBM Security Verify Access Container<=10.0 - 10.0.9.1
Event History
Mar 12, 2025
CVE Published
via MITRE·09:42 AM
Data Sourced
via MITRE·09:42 AM
Description
Data Sourced
via NVD·10:15 AM
RemedyDescriptionSeverityWeaknessAffected Software
Data Sourced
via Red Hat·12:24 PM
DescriptionSeverityAffected Software
Apr 9, 2025
Data Sourced
via Microsoft·07:00 AM
DescriptionSeverityWeakness
Data Sourced
via Microsoft·07:00 AM
Affected Software
Updated
via Microsoft·07:00 AM
Affected Software
Updated
via Microsoft·07:00 AM
SeverityAffected Software
Updated
via Microsoft·07:00 AM
DescriptionSeverity
Jul 8, 2026
Data Sourced
via IBM·12:00 AM
DescriptionAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2025-21846?
CVE-2025-21846 is classified as a high-severity vulnerability due to the potential for NULL dereference leading to application crashes.
2
What systems are affected by CVE-2025-21846?
CVE-2025-21846 affects the Linux kernel, specifically installations that utilize the acct(2) system call.
3
How do I fix CVE-2025-21846?
To fix CVE-2025-21846, you should update your Linux kernel to the latest stable version that addresses this vulnerability.
4
What risks does CVE-2025-21846 pose to my system?
CVE-2025-21846 poses risks of system instability and potential denial of service due to application crashes linked to the NULL dereference.
5
Has CVE-2025-21846 been mitigated?
Yes, CVE-2025-21846 has been resolved in recent Linux kernel updates, addressing the identified vulnerability.