CVE-2025-22039 | Linux Kernel up to 6.12.22/6.13.10/6.14.1 ksmbd smb_check_perm_dacl dacloffset null pointer dereference (Nessus ID 240657 / WID-SEC-2025-0844)
A vulnerability identified as critical has been detected in Linux Kernel up to 6.12.22/6.13.10/6.14.1. Affected by this issue is the function smb_check_perm_dacl of the component ksmbd. Performing a manipulation of the argument dacloffset results in null pointer dereference.
This vulnerability is reported as CVE-2025-22039. The attacker must have access to the local network to execute the attack. No exploit exists.
You should upgrade the affected component.