Security Advisory

CVE-2025-68302

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2025-12-16 15:06:20
Last updated 2026-05-11 21:50:32
Assigner Linux
State PUBLISHED

Description

In the Linux kernel, the following vulnerability has been resolved: net: sxgbe: fix potential NULL dereference in sxgbe_rx() Currently, when skb is null, the driver prints an error and then dereferences skb on the next line. To fix this, lets add a break after the error message to switch to sxgbe_rx_refill(), which is similar to the approach taken by the other drivers in this particular case, e.g. calxeda with xgmac_rx(). Found during a code review.