cbcvebase.
CVE-2025-37824
published 2025-05-08

CVE-2025-37824: In the Linux kernel, the following vulnerability has been resolved: tipc: fix NULL pointer dereference in tipc_mon_reinit_self() syzbot reported: tipc: Node…

PriorityP420medium5.5CVSS 3.1
AVLACLPRLUINSUCNINAH
EPSS
0.18%
7.7th percentile
In the Linux kernel, the following vulnerability has been resolved: tipc: fix NULL pointer dereference in tipc_mon_reinit_self() syzbot reported: tipc: Node number set to 1055423674 Oops: general protection fault, probably for non-canonical address 0xdffffc0000000000: 0000 [#1] SMP KASAN NOPTI KASAN: null-ptr-deref in range [0x0000000000000000-0x0000000000000007] CPU: 3 UID: 0 PID: 6017 Comm: kworker/3:5 Not tainted 6.15.0-rc1-syzkaller-00246-g900241a5cc15 #0 PREEMPT(full) Hardware name: QEMU Standard PC (Q35 + ICH9, 2009), BIOS 1.16.3-debian-1.16.3-2~bpo12+1 04/01/2014 Workqueue: events tipc_net_finalize_work RIP: 0010:tipc_mon_reinit_self+0x11c/0x210 net/tipc/monitor.c:719 ... RSP: 0018:ffffc9000356fb68 EFLAGS: 00010246 RAX: 0000000000000000 RBX: 0000000000000000 RCX: 000000003ee87cba RDX: 0000000000000000 RSI: ffffffff8dbc56a7 RDI: ffff88804c2cc010 RBP: dffffc0000000000 R08: 0000000000000001 R09: 0000000000000000 R10: 0000000000000001 R11: 0000000000000000 R12: 0000000000000007 R13: fffffbfff2111097 R14: ffff88804ead8000 R15: ffff88804ead9010 FS: 0000000000000000(0000) GS:ffff888097ab9000(0000) knlGS:0000000000000000 CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 CR2: 00000000f720eb00 CR3: 000000000e182000 CR4: 0000000000352ef0 DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 Call Trace: tipc_net_finalize+0x10b/0x180 net/tipc/net.c:140 process_one_work+0x9cc/0x1b70 kernel/workqueue.c:3238 process_scheduled_works kernel/workqueue.c:3319 [inline] worker_thread+0x6c8/0xf10 kernel/workqueue.c:3400 kthread+0x3c2/0x780 kernel/kthread.c:464 ret_from_fork+0x45/0x80 arch/x86/kernel/process.c:153 ret_from_fork_asm+0x1a/0x30 arch/x86/entry/entry_64.S:245 ... RIP: 0010:tipc_mon_reinit_self+0x11c/0x210 net/tipc/monitor.c:719 ... RSP: 0018:ffffc9000356fb68 EFLAGS: 00010246 RAX: 0000000000000000 RBX: 0000000000000000 RCX: 000000003ee87cba RDX: 0000000000000000 RSI: ffffffff8dbc56a7 RDI: ff

Affected

42 ranges· showing 25
VendorProductVersion rangeFixed in
debiandebian_linux
debianlinux< linux 6.1.137-1 (bookworm)linux 6.1.137-1 (bookworm)
debianlinux-6.1< linux 6.1.137-1 (bookworm)linux 6.1.137-1 (bookworm)
linuxlinux
linuxlinux
linuxlinux>= 28845c28f842e9e55e75b2c116bff714bb039055 < a3df56010403b2cd26388096ebccf959d23c4dcca3df56010403b2cd26388096ebccf959d23c4dcc
linuxlinux>= 4.19.99 < 4.204.20
linuxlinux>= 46cb01eeeb86fca6afe24dda1167b0cb95424e29 < e6613b6d41f4010c4d484cbc7bfca690d8d522a2e6613b6d41f4010c4d484cbc7bfca690d8d522a2
linuxlinux>= 46cb01eeeb86fca6afe24dda1167b0cb95424e29 < 5fd464fd24de93d0eca377554bf0ff2548f76f305fd464fd24de93d0eca377554bf0ff2548f76f30
linuxlinux>= 46cb01eeeb86fca6afe24dda1167b0cb95424e29 < e79e8e05aa46f90d21023f0ffe6f136ed6a20932e79e8e05aa46f90d21023f0ffe6f136ed6a20932
linuxlinux>= 46cb01eeeb86fca6afe24dda1167b0cb95424e29 < dd6cb0a8575b00fbd503e96903184125176f4fa3dd6cb0a8575b00fbd503e96903184125176f4fa3
linuxlinux>= 46cb01eeeb86fca6afe24dda1167b0cb95424e29 < 0ceef62a328ce1288598c9242576292671f21e960ceef62a328ce1288598c9242576292671f21e96
linuxlinux>= 46cb01eeeb86fca6afe24dda1167b0cb95424e29 < 4d5e1e2d3e9d70beff7beab44fd6ce91405a405e4d5e1e2d3e9d70beff7beab44fd6ce91405a405e
linuxlinux>= 46cb01eeeb86fca6afe24dda1167b0cb95424e29 < d63527e109e811ef11abb1c2985048fdb528b4cbd63527e109e811ef11abb1c2985048fdb528b4cb
linuxlinux>= 5.4.15 < 5.4.2935.4.293
linuxlinux_kernel
linuxlinux_kernel>= 0 < 5.10.237-15.10.237-1
linuxlinux_kernel>= 0 < 6.1.137-16.1.137-1
linuxlinux_kernel>= 0 < 6.12.27-16.12.27-1
linuxlinux_kernel>= 0 < 6.12.27-16.12.27-1
linuxlinux_kernel>= 0 < 5.15.0-144.1575.15.0-144.157
linuxlinux_kernel>= 0 < 6.8.0-100.1006.8.0-100.100
linuxlinux_kernel>= 0 < 6.14.0-22.226.14.0-22.22
linuxlinux_kernel>= 4.19.99 < 4.204.20
linuxlinux_kernel>= 5.11 < 5.15.1815.15.181

CVSS provenance

nvdv3.15.5MEDIUMCVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
osv8.8HIGH
vendor_ubuntu8.8HIGH
vendor_debian5.5MEDIUM
vendor_msrc5.5MEDIUM
vendor_redhat5.5MEDIUM
Stop checking back — get the weekly exploitation signal.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.