U.S. flag   An official website of the United States government
Dot gov

Official websites use .gov
A .gov website belongs to an official government organization in the United States.

Https

Secure .gov websites use HTTPS
A lock (Dot gov) or https:// means you've safely connected to the .gov website. Share sensitive information only on official, secure websites.

CVE-2025-40187 Detail

Description

In the Linux kernel, the following vulnerability has been resolved: net/sctp: fix a null dereference in sctp_disposition sctp_sf_do_5_1D_ce() If new_asoc->peer.adaptation_ind=0 and sctp_ulpevent_make_authkey=0 and sctp_ulpevent_make_authkey() returns 0, then the variable ai_ev remains zero and the zero will be dereferenced in the sctp_ulpevent_free() function.


Metrics

NVD enrichment efforts reference publicly available information to associate vector strings. CVSS information contributed by other sources is also displayed.
CVSS 4.0 Severity and Vector Strings:

NIST CVSS score
NIST: NVD
N/A
NVD assessment not yet provided.

References to Advisories, Solutions, and Tools

By selecting these links, you will be leaving NIST webspace. We have provided these links to other web sites because they may have information that would be of interest to you. No inferences should be drawn on account of other sites being referenced, or not, from this page. There may be other web sites that are more appropriate for your purpose. NIST does not necessarily endorse the views expressed, or concur with the facts presented on these sites. Further, NIST does not endorse any commercial products that may be mentioned on these sites. Please address comments about this page to [email protected].

URL Source(s) Tag(s)
https://git.kernel.org/stable/c/025419f4e216a3ae0d0cec622262e98e8078c447 kernel.org
https://git.kernel.org/stable/c/1014b83778c8677f1d7a57c26dc728baa801ac62 kernel.org
https://git.kernel.org/stable/c/2f3119686ef50319490ccaec81a575973da98815 kernel.org
https://git.kernel.org/stable/c/7f702f85df0266ed7b5bab81ba50394c92f3c928 kernel.org
https://git.kernel.org/stable/c/badbd79313e6591616c1b78e29a9b71efed7f035 kernel.org
https://git.kernel.org/stable/c/c21f45cfa4a9526b34d76b397c9ef080668b6e73 kernel.org
https://git.kernel.org/stable/c/d0e8f1445c19b1786759ba72a38267e1449bab7e kernel.org
https://git.kernel.org/stable/c/dbceedc0213e75bf3e9f9f9e2f66b10699d004fe kernel.org

Weakness Enumeration

CWE-ID CWE Name Source

Change History

1 change records found show changes

Quick Info

CVE Dictionary Entry:
CVE-2025-40187
NVD Published Date:
11/12/2025
NVD Last Modified:
11/12/2025
Source:
kernel.org