CVE-2025-22006

MEDIUM

Linux kernel - Null Pointer Dereference

Title source: llm
STIX 2.1

Description

In the Linux kernel, the following vulnerability has been resolved: net: ethernet: ti: am65-cpsw: Fix NAPI registration sequence Registering the interrupts for TX or RX DMA Channels prior to registering their respective NAPI callbacks can result in a NULL pointer dereference. This is seen in practice as a random occurrence since it depends on the randomness associated with the generation of traffic by Linux and the reception of traffic from the wire.

Scores

CVSS v3 5.5
EPSS 0.0015
EPSS Percentile 4.7%
Attack Vector LOCAL
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H

CISA SSVC

Vulnrichment
Exploitation none
Automatable no
Technical Impact partial

Details

CWE
CWE-476
Status published
Products (8)
linux/Kernel 6.12.14 - 6.12.21linux
linux/Kernel 6.13.3 - 6.13.9linux
Linux/Linux 6.12.14 - 6.12.21
Linux/Linux 6.13.3 - 6.13.9
Linux/Linux 681eb2beb3efe21e630bcc4881595e3b42dd7948 - 5f079290e5913a0060e059500b7d440990ac1066
Linux/Linux 82b44cdb0355b5061769ae51909d1c8a1b7f31f2 - d4bf956547c38c04fad8d72a961ac4dc00bad000
Linux/Linux faef4c2bebac3c6e4161e66c3d42b85e88013709 - 942557abed7f38b77a47d77b92d448802eefe185
linux/linux_kernel 6.12.14 - 6.12.21
Published Apr 03, 2025
Tracked Since Feb 18, 2026