CVE-2025-40240 | Linux Kernel up to 6.17.5 sctp null pointer dereference (Nessus ID 277494 / WID-SEC-2025-2747)
A vulnerability was found in Linux Kernel up to 6.17.5. It has been declared as critical. This affects an unknown function of the component sctp. Such manipulation leads to null pointer dereference.
This vulnerability is listed as CVE-2025-40240. The attack must be carried out from within the local network. There is no available exploit.
It is recommended to upgrade the affected component.