SB2026032558 - NULL Pointer Dereference in Linux kernel bridge
Published: March 25, 2026
Breakdown by Severity
- Low
- Medium
- High
- Critical
Description
This security bulletin contains information about 1 security vulnerability.
1) NULL Pointer Dereference (CVE-ID: CVE-2026-23381)
The vulnerability allows a remote attacker to cause a denial of service.
The vulnerability exists due to a NULL pointer dereference in the bridge component when handling packets. A remote attacker can send a specially crafted ICMPv6 Neighbor Discovery packet to trigger a kernel NULL pointer dereference.
IPv6 must be disabled via the 'ipv6.disable=1' kernel parameter for the vulnerability to be exploitable.
Remediation
Install update from vendor's website.
References
- https://git.kernel.org/stable/c/20ef5c25422f97dd09d751e5ae6c18406cdc78e6
- https://git.kernel.org/stable/c/33dec6f10777d5a8f71c0a200f690da5ae3c2e55
- https://git.kernel.org/stable/c/7a894eb5de246d79f13105c55a67381039a24d44
- https://git.kernel.org/stable/c/a12cdaa3375f0bd3c8f4e564be7c143529abfe5b
- https://git.kernel.org/stable/c/aa73deb3b6b730ec280d45b3f423bfa9e17bc122
- https://git.kernel.org/stable/c/e5e890630533bdc15b26a34bb8e7ef539bdf1322