CVE-2025-21720 | Linux Kernel up to 6.6.75/6.12.12/6.13.1 Netlink Socket ip_forward null pointer dereference (Nessus ID 236983 / WID-SEC-2025-0453)
A vulnerability, which was classified as very critical, was found in Linux Kernel up to 6.6.75/6.12.12/6.13.1. This impacts an unknown function of the file /proc/sys/net/ipv4/ip_forward of the component Netlink Socket Handler. The manipulation results in null pointer dereference.
This vulnerability was named CVE-2025-21720. The attack needs to be approached within the local network. There is no available exploit.
You should upgrade the affected component.