CVE-2025-68197 — NULL Pointer Dereference in Linux
Severity
5.0MEDIUM
No vectorEPSS
0.0%
top 89.68%
CISA KEV
Not in KEV
Exploit
No known exploits
Affected products
Timeline
PublishedDec 16
Latest updateFeb 24
Description
In the Linux kernel, the following vulnerability has been resolved:
bnxt_en: Fix null pointer dereference in bnxt_bs_trace_check_wrap()
With older FW, we may get the ASYNC_EVENT_CMPL_EVENT_ID_DBG_BUF_PRODUCER
for FW trace data type that has not been initialized. This will result
in a crash in bnxt_bs_trace_type_wrap(). Add a guard to check for a
valid magic_byte pointer before proceeding.
Affected Packages5 packages
▶CVEListV5linux/linux84fcd9449fd7882ddfb05ba64d75f9be2d29b2e9 — 689ae5ba31293eebb7f21c0ef8939468ac72b5ce+2