PT-2026-2545 · Linux+2 · Linux Kernel+2

CVE-2025-68813

·

Published

2025-11-21

·

Updated

2026-08-30

CVSS v3.1

5.5

Medium

VectorAV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
Name of the Vulnerable Software and Affected Versions Linux kernel versions prior to 6.6.114
Description The Linux kernel contains a flaw within the IPv4 code path in the ip vs get out rt() function. This function can call dst link failure() without verifying that skb->dev is set, leading to a NULL pointer dereference in fib compute spec dst() when attempting to send ICMP destination unreachable messages. This issue arises when IPVS processes a packet in NAT mode with a misconfigured destination, route lookup fails, and the error path is triggered. Specifically, the vulnerability occurs when fib compute spec dst() attempts to access skb->dev directly, which is NULL in certain scenarios. The root cause is related to changes introduced in a previous commit and an incomplete fix attempt. The crash can be triggered by a misconfigured destination and a failed route lookup, ultimately leading to a dereference of a NULL pointer within the fib compute spec dst() function.
Recommendations Update to Linux kernel version 6.6.114 or later.

Exploit

Fix

NULL Pointer Dereference

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

BDU:2026-08863
CVE-2025-68813
ECHO-47A7-0E33-ABAB
MGASA-2026-0017
MGASA-2026-0018
OESA-2026-2580
OESA-2026-2675
OPENSUSE-SU-2026:20287-1
SUSE-SU-2026:0350-1
SUSE-SU-2026:0369-1
SUSE-SU-2026:0411-1
SUSE-SU-2026:0447-1
SUSE-SU-2026:0471-1
SUSE-SU-2026:0472-1
SUSE-SU-2026:0473-1
SUSE-SU-2026:0474-1
SUSE-SU-2026:0496-1
SUSE-SU-2026:0587-1
SUSE-SU-2026:0617-1
SUSE-SU-2026:0939-1
SUSE-SU-2026:0940-1
SUSE-SU-2026:0941-1
SUSE-SU-2026:0943-1
SUSE-SU-2026:0944-1
SUSE-SU-2026:0945-1
SUSE-SU-2026:0946-1
SUSE-SU-2026:0951-1
SUSE-SU-2026:0953-1
SUSE-SU-2026:0954-1
SUSE-SU-2026:0958-1
SUSE-SU-2026:0964-1
SUSE-SU-2026:0967-1
SUSE-SU-2026:0970-1
SUSE-SU-2026:0983-1
SUSE-SU-2026:0985-1
SUSE-SU-2026:0992-1
SUSE-SU-2026:0997-1
SUSE-SU-2026:1000-1
SUSE-SU-2026:1002-1
SUSE-SU-2026:1039-1
SUSE-SU-2026:1044-1
SUSE-SU-2026:1046-1
SUSE-SU-2026:1048-1
SUSE-SU-2026:1049-1
SUSE-SU-2026:1059-1
SUSE-SU-2026:1073-1
SUSE-SU-2026:1083-1
SUSE-SU-2026:1088-1
SUSE-SU-2026:1089-1
SUSE-SU-2026:1096-1
SUSE-SU-2026:1099-1
SUSE-SU-2026:1100-1
SUSE-SU-2026:1101-1
SUSE-SU-2026:1102-1
SUSE-SU-2026:1125-1
SUSE-SU-2026:1132-1
SUSE-SU-2026:1136-1
SUSE-SU-2026:20477-1
SUSE-SU-2026:20498-1
SUSE-SU-2026:20555-1
SUSE-SU-2026:20570-1
SUSE-SU-2026:20599-1
SUSE-SU-2026:20615-1
SUSE-SU-2026:20828-1
SUSE-SU-2026:20829-1
SUSE-SU-2026:20830-1
SUSE-SU-2026:20831-1
SUSE-SU-2026:20832-1
SUSE-SU-2026:20836-1
SUSE-SU-2026:20837-1
SUSE-SU-2026:20840-1
SUSE-SU-2026:20841-1
SUSE-SU-2026:20842-1
SUSE-SU-2026:20845-1
SUSE-SU-2026:20847-1
SUSE-SU-2026:20848-1
SUSE-SU-2026:20849-1
SUSE-SU-2026:20850-1
SUSE-SU-2026:20851-1
SUSE-SU-2026:20852-1
SUSE-SU-2026:20853-1
SUSE-SU-2026:20854-1
SUSE-SU-2026:20855-1
SUSE-SU-2026:20856-1
SUSE-SU-2026:20857-1
SUSE-SU-2026:20858-1
SUSE-SU-2026:20859-1
SUSE-SU-2026:20860-1
SUSE-SU-2026:20861-1
SUSE-SU-2026:20862-1
SUSE-SU-2026:20863-1
SUSE-SU-2026:20864-1
SUSE-SU-2026:20865-1
SUSE-SU-2026:20866-1
SUSE-SU-2026:20876-1
SUSE-SU-2026:20880-1
SUSE-SU-2026:20881-1
SUSE-SU-2026:20882-1
SUSE-SU-2026:20883-1
SUSE-SU-2026:20884-1
SUSE-SU-2026:20885-1
SUSE-SU-2026:20886-1
SUSE-SU-2026:20887-1
SUSE-SU-2026:20888-1
SUSE-SU-2026:20889-1
SUSE-SU-2026:20891-1
SUSE-SU-2026:20892-1
SUSE-SU-2026:20893-1
SUSE-SU-2026:20894-1
SUSE-SU-2026:20895-1
SUSE-SU-2026:20896-1
SUSE-SU-2026:20897-1
SUSE-SU-2026:20898-1
SUSE-SU-2026:20899-1
SUSE-SU-2026:20900-1
SUSE-SU-2026:20943-1
SUSE-SU-2026:20944-1
SUSE-SU-2026:20945-1
SUSE-SU-2026:20946-1
SUSE-SU-2026:20947-1
USN-8096-1
USN-8096-2
USN-8096-3
USN-8096-4
USN-8096-5
USN-8116-1
USN-8141-1
USN-8163-1
USN-8163-2
USN-8177-1
USN-8177-2
USN-8179-1
USN-8179-2
USN-8179-3
USN-8179-4
USN-8183-1
USN-8183-2
USN-8184-1
USN-8185-1
USN-8185-2
USN-8203-1
USN-8204-1
USN-8243-1
USN-8245-1
USN-8257-1
USN-8258-1
USN-8260-1
USN-8261-1
USN-8265-1
USN-8440-1

Affected Products

Linuxmint
Linux Kernel
Ubuntu