CVE-2025-40254 | Linux Kernel up to 5.4.301/6.6.117/6.12.59/6.17.9 nsh_key_put_from_nlattr null pointer dereference (Nessus ID 277528)
A vulnerability was found in Linux Kernel up to 5.4.301/6.6.117/6.12.59/6.17.9. It has been classified as critical. Affected is the function nsh_key_put_from_nlattr. Performing manipulation results in null pointer dereference.
This vulnerability is identified as CVE-2025-40254. The attack can only be performed from the local network. There is not any exploit available.
Upgrading the affected component is recommended.