CVE-2025-21937 | Linux Kernel up to 6.1.130/6.6.82/6.12.18/6.13.6 Bluetooth mgmt_alloc_skb null pointer dereference (Nessus ID 234309 / WID-SEC-2025-0683)
A vulnerability was found in Linux Kernel up to 6.1.130/6.6.82/6.12.18/6.13.6. It has been rated as critical. This issue affects the function mgmt_alloc_skb of the component Bluetooth. The manipulation leads to null pointer dereference.
The identification of this vulnerability is CVE-2025-21937. The attack needs to be done within the local network. There is no exploit available.
It is recommended to upgrade the affected component.