issues.chromium.org
https://issues.chromium.org/issues/b/380043638 CVE-2025-2073
HIGH
Record summary
CVE-2025-2073 has a selected CVSS score of 8.8 (high).
Description
Out-of-Bounds Read in netfilter/ipset in Linux Kernel ChromeOS [6.1, 5.15, 5.10, 5.4, 4.19] allows a local attacker with low privileges to trigger an out-of-bounds read, potentially leading to information disclosure
Description source: CVE List
Exploitation context
CISA SSVC decision
ExploitationNone
AutomatableNo
Technical impactTotal
CISA Coordinator · SSVC 2.0.3 · Evaluated Apr 17, 2025 · Source: CVE List
Affected products and versions
1| Product | Source | Version range | Status |
|---|---|---|---|
ChromeOSBrowse Google / ChromeOS | CVE List | Kernal version 6.1, 5.15. 5.10, 4.19 chromeOS version 16093.103.0 to < Kernal version 6.1, 5.15. 5.10, 4.19 chromeOS version 16093.103.0 | affected |
References
3issuetracker.google.com
https://issuetracker.google.com/issues/380043638 nvd.nist.gov
https://nvd.nist.gov/vuln/detail/CVE-2025-2073