NULL Pointer Dereference in Linux Kernel Affecting Various Versions
CVE-2025-22018

Currently unrated

Key Information:

Vendor
Linux
Status
Vendor
CVE Published:
16 April 2025

Summary

A vulnerability has been identified in the Linux kernel that allows for a null pointer dereference. When the function MPOA_cache_impos_rcvd() is invoked, it can lead to a crash if both the 'entry' and 'holding_time' parameters are NULL. This results in an attempt to access an invalid memory address with the entry variable, which could lead to system instability and potential unauthorized access to sensitive data.

Affected Version(s)

Linux 1da177e4c3f41524e886b7f1b8a0c1fc7321cac2

Linux 1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 < 1505f9b720656b17865e4166ab002960162bf679

Linux 1da177e4c3f41524e886b7f1b8a0c1fc7321cac2

References

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.