CVE-2025-22006
published 2025-04-03CVE-2025-22006: In the Linux kernel, the following vulnerability has been resolved: net: ethernet: ti: am65-cpsw: Fix NAPI registration sequence Registering the interrupts for…
PriorityP418medium5.5CVSS 3.1
AVLACLPRLUINSUCNINAH
EPSS
0.18%
7.5th percentile
In the Linux kernel, the following vulnerability has been resolved:
net: ethernet: ti: am65-cpsw: Fix NAPI registration sequence
Registering the interrupts for TX or RX DMA Channels prior to registering
their respective NAPI callbacks can result in a NULL pointer dereference.
This is seen in practice as a random occurrence since it depends on the
randomness associated with the generation of traffic by Linux and the
reception of traffic from the wire.
Affected
10 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| debian | linux | < linux 6.12.21-1 (forky) | linux 6.12.21-1 (forky) |
| linux | linux | >= 6.12.14 < 6.12.21 | 6.12.21 |
| linux | linux | >= 6.13.3 < 6.13.9 | 6.13.9 |
| linux | linux | >= 681eb2beb3efe21e630bcc4881595e3b42dd7948 < 5f079290e5913a0060e059500b7d440990ac1066 | 5f079290e5913a0060e059500b7d440990ac1066 |
| linux | linux | >= 82b44cdb0355b5061769ae51909d1c8a1b7f31f2 < d4bf956547c38c04fad8d72a961ac4dc00bad000 | d4bf956547c38c04fad8d72a961ac4dc00bad000 |
| linux | linux | >= faef4c2bebac3c6e4161e66c3d42b85e88013709 < 942557abed7f38b77a47d77b92d448802eefe185 | 942557abed7f38b77a47d77b92d448802eefe185 |
| linux | linux_kernel | >= 0 < 6.12.21-1 | 6.12.21-1 |
| linux | linux_kernel | >= 0 < 6.12.21-1 | 6.12.21-1 |
| linux | linux_kernel | >= 6.12.14 < 6.12.21 | 6.12.21 |
| linux | linux_kernel | >= 6.13.3 < 6.13.9 | 6.13.9 |
CVSS provenance
nvdv3.15.5MEDIUMCVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
osv5.5MEDIUM
vendor_debian5.5LOW
vendor_redhat5.5MEDIUM
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
GHSA
GHSA-c5f2-596r-9c4q: In the Linux kernel, the following vulnerability has been resolved:
net: ethernet: ti: am65-cpsw: Fix NAPI registration sequence
Registering the int
ghsa_unreviewed·2025-04-03
CVE-2025-22006 [MEDIUM] CWE-476 GHSA-c5f2-596r-9c4q: In the Linux kernel, the following vulnerability has been resolved:
net: ethernet: ti: am65-cpsw: Fix NAPI registration sequence
Registering the int
In the Linux kernel, the following vulnerability has been resolved:
net: ethernet: ti: am65-cpsw: Fix NAPI registration sequence
Registering the interrupts for TX or RX DMA Channels prior to registering
their respective NAPI callbacks can result in a NULL pointer dereference.
This is seen in practice as a random occurrence since it depends on the
randomness associated with the generation of traffic by Linux and the
reception of traffic from the wire.
OSV
CVE-2025-22006: In the Linux kernel, the following vulnerability has been resolved: net: ethernet: ti: am65-cpsw: Fix NAPI registration sequence Registering the inter
osv·2025-04-03·CVSS 5.5
CVE-2025-22006 [MEDIUM] CVE-2025-22006: In the Linux kernel, the following vulnerability has been resolved: net: ethernet: ti: am65-cpsw: Fix NAPI registration sequence Registering the inter
In the Linux kernel, the following vulnerability has been resolved: net: ethernet: ti: am65-cpsw: Fix NAPI registration sequence Registering the interrupts for TX or RX DMA Channels prior to registering their respective NAPI callbacks can result in a NULL pointer dereference. This is seen in practice as a random occurrence since it depends on the randomness associated with the generation of traffic by Linux and the reception of traffic from the wire.
Red Hat
kernel: net: ethernet: ti: am65-cpsw: Fix NAPI registration sequence
vendor_redhat·2025-04-03·CVSS 5.5
CVE-2025-22006 [MEDIUM] CWE-476 kernel: net: ethernet: ti: am65-cpsw: Fix NAPI registration sequence
kernel: net: ethernet: ti: am65-cpsw: Fix NAPI registration sequence
In the Linux kernel, the following vulnerability has been resolved:
net: ethernet: ti: am65-cpsw: Fix NAPI registration sequence
Registering the interrupts for TX or RX DMA Channels prior to registering
their respective NAPI callbacks can result in a NULL pointer dereference.
This is seen in practice as a random occurrence since it depends on the
randomness associated with the generation of traffic by Linux and the
reception of traffic from the wire.
Package: kernel (Red Hat Enterprise Linux 10) - Fix deferred
Package: kernel (Red Hat Enterprise Linux 6) - Not affected
Package: kernel (Red Hat Enterprise Linux 7) - Not affected
Package: kernel-rt (Red Hat Enterprise Linux 7) - Not affected
Package: kernel (Red Hat E
Debian
CVE-2025-22006: linux - In the Linux kernel, the following vulnerability has been resolved: net: ethern...
vendor_debian·2025·CVSS 5.5
CVE-2025-22006 [MEDIUM] CVE-2025-22006: linux - In the Linux kernel, the following vulnerability has been resolved: net: ethern...
In the Linux kernel, the following vulnerability has been resolved: net: ethernet: ti: am65-cpsw: Fix NAPI registration sequence Registering the interrupts for TX or RX DMA Channels prior to registering their respective NAPI callbacks can result in a NULL pointer dereference. This is seen in practice as a random occurrence since it depends on the randomness associated with the generation of traffic by Linux and the reception of traffic from the wire.
Scope: local
bookworm: resolved
bullseye: resolved
forky: resolved (fixed in 6.12.21-1)
sid: resolved (fixed in 6.12.21-1)
trixie: resolved (fixed in 6.12.21-1)
No detection rules found.
No public exploits indexed.
2025-04-03
Published