CVE-2025-22065 | Linux Kernel up to 6.12.22/6.13.10/6.14.1 Idpf Driver sriov_numvfs idpf_remove null pointer dereference (Nessus ID 240558 / WID-SEC-2025-0844)
A vulnerability categorized as critical has been discovered in Linux Kernel up to 6.12.22/6.13.10/6.14.1. Affected by this issue is the function idpf_remove of the file /sys/class/net//device/sriov_numvfs of the component Idpf Driver. Executing manipulation can lead to null pointer dereference.
This vulnerability is tracked as CVE-2025-22065. The attack is only possible within the local network. No exploit exists.
It is advisable to upgrade the affected component.