CVE-2025-21776 | Linux Kernel up to 6.1.128/6.6.78/6.12.15/6.13.3/6.14-rc2 usb_hub_to_struct_hub null pointer dereference (Nessus ID 233595 / WID-SEC-2025-0453)
A vulnerability labeled as critical has been found in Linux Kernel up to 6.1.128/6.6.78/6.12.15/6.13.3/6.14-rc2. This affects the function usb_hub_to_struct_hub. Such manipulation leads to null pointer dereference.
This vulnerability is traded as CVE-2025-21776. Access to the local network is required for this attack to succeed. There is no exploit available.
The affected component should be upgraded.