CVE-2025-37806 | Linux Kernel up to 6.12.25/6.14.4 ntfs3 is_compressed null pointer dereference (Nessus ID 240657 / WID-SEC-2025-0975)
A vulnerability was found in Linux Kernel up to 6.12.25/6.14.4. It has been classified as critical. Affected is the function is_compressed of the component ntfs3. Performing a manipulation results in null pointer dereference.
This vulnerability is reported as CVE-2025-37806. The attacker must have access to the local network to execute the attack. No exploit exists.
Upgrading the affected component is recommended.