Upstream information

CVE-2025-68302 at MITRE

Description

In the Linux kernel, the following vulnerability has been resolved:

net: sxgbe: fix potential NULL dereference in sxgbe_rx()

Currently, when skb is null, the driver prints an error and then
dereferences skb on the next line.

To fix this, let's add a 'break' after the error message to switch
to sxgbe_rx_refill(), which is similar to the approach taken by the
other drivers in this particular case, e.g. calxeda with xgmac_rx().

Found during a code review.

SUSE information

Overall state of this security issue: Does not affect SUSE products

SUSE Bugzilla entry: 1255121 [NEW]

No SUSE Security Announcements cross referenced.


SUSE Timeline for this CVE

CVE page created: Wed Dec 17 13:04:55 2025
CVE page last modified: Wed Dec 17 13:04:55 2025