CVE-2025-40053

NONE EPSS 10.2%
Published Oct 28, 20258mo ago · Modified Jun 17, 20261w ago
Find Similar
Published Oct 28, 2025 8mo ago
Last Modified Jun 17, 2026 1w ago

Description

In the Linux kernel, the following vulnerability has been resolved: net: dlink: handle copy_thresh allocation failure The driver did not handle failure of `netdev_alloc_skb_ip_align()`. If the allocation failed, dereferencing `skb->protocol` could lead to a NULL pointer dereference. This patch tries to allocate `skb`. If the allocation fails, it falls back to the normal path. Tested-on: D-Link DGE-550T Rev-A3

Threat Intelligence

EPSS Exploit Probability
10.2% percentile
Exploit & Patch Status
No Known Exploit
No Patch Available

References 7

  • git.kernel.org https://git.kernel.org/stable/c/5aa9b885602811a026a3f45c92ea2b4b04c54f09
  • git.kernel.org https://git.kernel.org/stable/c/7ed5010fef0930f4322d620052edc854ef3ec41f
  • git.kernel.org https://git.kernel.org/stable/c/8169a6011c5fecc6cb1c3654c541c567d3318de8
  • git.kernel.org https://git.kernel.org/stable/c/84fd710a704f3d53d4120e452e86cea558cf73a8
  • git.kernel.org https://git.kernel.org/stable/c/9d49e4b14609e1a20d931e718962c4b6b5485174
  • git.kernel.org https://git.kernel.org/stable/c/ea87151df398d407a632c7bf63013290f01c5009
  • git.kernel.org https://git.kernel.org/stable/c/fd7b6b2c920d7fd370a612be416a904d6e1ebe55

Remediation

No remediation data recorded yet

Check vendor advisories and the NVD entry for patch availability.