CVE-2025-38123 | Linux Kernel up to 6.6.93/6.12.33/6.15.2 net dev_gro_receive null pointer dereference (EUVD-2025-19820 / Nessus ID 250016)
A vulnerability classified as critical was found in Linux Kernel up to 6.6.93/6.12.33/6.15.2. Affected by this issue is the function dev_gro_receive of the component net. Such manipulation leads to null pointer dereference.
This vulnerability is listed as CVE-2025-38123. The attack must be carried out from within the local network. There is no available exploit.
Upgrading the affected component is advised.