#VU105001 NULL pointer dereference in Linux kernel - CVE-2025-21740
Published: February 27, 2025 / Updated: May 11, 2025
Linux kernel
Linux Foundation
Description
The vulnerability allows a local user to perform a denial of service (DoS) attack.
The vulnerability exists due to NULL pointer dereference within the mmu_destroy_caches(), set_nx_huge_pages(), set_nx_huge_pages_recovery_param() and kvm_mmu_start_lpage_recovery() functions in arch/x86/kvm/mmu/mmu.c. A local user can perform a denial of service (DoS) attack.