cbcvebase.
CVE-2025-68197
published 2025-12-16

CVE-2025-68197: In the Linux kernel, the following vulnerability has been resolved: bnxt_en: Fix null pointer dereference in bnxt_bs_trace_check_wrap() With older FW, we may…

PriorityP420medium5
EPSS
0.17%
6.1th percentile
In the Linux kernel, the following vulnerability has been resolved: bnxt_en: Fix null pointer dereference in bnxt_bs_trace_check_wrap() With older FW, we may get the ASYNC_EVENT_CMPL_EVENT_ID_DBG_BUF_PRODUCER for FW trace data type that has not been initialized. This will result in a crash in bnxt_bs_trace_type_wrap(). Add a guard to check for a valid magic_byte pointer before proceeding.

Affected

9 ranges
VendorProductVersion rangeFixed in
debianlinux< linux 6.17.8-1 (forky)linux 6.17.8-1 (forky)
linuxlinux
linuxlinux>= 84fcd9449fd7882ddfb05ba64d75f9be2d29b2e9 < 689ae5ba31293eebb7f21c0ef8939468ac72b5ce689ae5ba31293eebb7f21c0ef8939468ac72b5ce
linuxlinux>= 84fcd9449fd7882ddfb05ba64d75f9be2d29b2e9 < ff02be05f78399c766be68ab0b2285ff90b2aaa8ff02be05f78399c766be68ab0b2285ff90b2aaa8
linuxlinux_kernel>= 0 < 6.17.8-16.17.8-1
linuxlinux_kernel>= 0 < 6.17.0-14.146.17.0-14.14
linuxlinux_kernel>= 6.13.0 < 6.17.86.17.8
ubuntulinux-aws
ubuntulinux-oracle
Stop checking back — get the weekly exploitation signal.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.