A vulnerability, which was classified as problematic, was found in Linux Kernel up to 6.6.73/6.12.10. Affected is the function page_pool_dev_alloc_pages. The manipulation leads to null pointer dereference.

This vulnerability is traded as CVE-2025-21676. Access to the local network is required for this attack to succeed. There is no exploit available.

It is recommended to upgrade the affected component.