CVE-2025-22039 | Linux Kernel up to 6.12.22/6.13.10/6.14.1 ksmbd smb_check_perm_dacl dacloffset null pointer dereference (Nessus ID 240657 / WID-SEC-2025-0844)
A vulnerability was found in Linux Kernel up to 6.12.22/6.13.10/6.14.1. It has been declared as critical. This vulnerability affects the function smb_check_perm_dacl of the component ksmbd. The manipulation of the argument dacloffset leads to null pointer dereference.
This vulnerability was named CVE-2025-22039. The attack needs to be done within the local network. There is no exploit available.
It is recommended to upgrade the affected component.