Home

Description

In the Linux kernel, the following vulnerability has been resolved: net: sxgbe: fix potential NULL dereference in sxgbe_rx() Currently, when skb is null, the driver prints an error and then dereferences skb on the next line. To fix this, let's add a 'break' after the error message to switch to sxgbe_rx_refill(), which is similar to the approach taken by the other drivers in this particular case, e.g. calxeda with xgmac_rx(). Found during a code review.

PUBLISHED Reserved 2025-12-16 | Published 2025-12-16 | Updated 2025-12-16 | Assigner Linux

Product status

Default status
unaffected

1edb9ca69e8a7988900fc0283e10550b5592164d (git) before ac171c3c755499c9f87fe30b920602255f8b5648
affected

1edb9ca69e8a7988900fc0283e10550b5592164d (git) before 18ef3ad1bb57dcf1a9ee61736039aedccf670b21
affected

1edb9ca69e8a7988900fc0283e10550b5592164d (git) before 46e5332126596a2ca791140feab18ce1fc1a3c86
affected

1edb9ca69e8a7988900fc0283e10550b5592164d (git) before 7fd789d6ea4915034eb6bcb72f6883c8151083e5
affected

1edb9ca69e8a7988900fc0283e10550b5592164d (git) before 45b5b4ddb8d6bea5fc1625ff6f163bbb125d49cc
affected

1edb9ca69e8a7988900fc0283e10550b5592164d (git) before 88f46c0be77bfe45830ac33102c75be7c34ac3f3
affected

1edb9ca69e8a7988900fc0283e10550b5592164d (git) before f5bce28f6b9125502abec4a67d68eabcd24b3b17
affected

Default status
affected

3.15
affected

Any version before 3.15
unaffected

5.10.247 (semver)
unaffected

5.15.197 (semver)
unaffected

6.1.159 (semver)
unaffected

6.6.119 (semver)
unaffected

6.12.61 (semver)
unaffected

6.17.11 (semver)
unaffected

6.18 (original_commit_for_fix)
unaffected

References

git.kernel.org/...c/ac171c3c755499c9f87fe30b920602255f8b5648

git.kernel.org/...c/18ef3ad1bb57dcf1a9ee61736039aedccf670b21

git.kernel.org/...c/46e5332126596a2ca791140feab18ce1fc1a3c86

git.kernel.org/...c/7fd789d6ea4915034eb6bcb72f6883c8151083e5

git.kernel.org/...c/45b5b4ddb8d6bea5fc1625ff6f163bbb125d49cc

git.kernel.org/...c/88f46c0be77bfe45830ac33102c75be7c34ac3f3

git.kernel.org/...c/f5bce28f6b9125502abec4a67d68eabcd24b3b17

cve.org (CVE-2025-68302)

nvd.nist.gov (CVE-2025-68302)

Download JSON

Data based on CVE®. Copyright © 1999-2025, The MITRE Corporation. All rights reserved.