CVE-2025-38526
In the Linux kernel, the following vulnerability has been resolved: ice: add NULL check in eswitch lag check The function ice_lag_is_switc
CVSS
7.5
High
EPSS
0.4%
p30
KEV
—
Exploit Today
9
0-100
Published: Aug 16, 2025 · Last modified: Jul 30, 2026 · CWE-476
0.4%EPSS · 30 days0.4%
2026-08-202026-09-17
In the Linux kernel, the following vulnerability has been resolved: ice: add NULL check in eswitch lag check The function ice_lag_is_switchdev_running() is being called from outside of the LAG event handler code. This results in the lag->upper_netdev being NULL sometimes. To avoid a NULL-pointer dereference, there needs to be a check before it is dereferenced.
- git.kernel.orghttps://git.kernel.org/stable/c/245917d3c5ed7c6ae720302b64eac5c6f0c85177
- git.kernel.orghttps://git.kernel.org/stable/c/27591d926191e42b2332e4bad3bcd3a49def393b
- git.kernel.orghttps://git.kernel.org/stable/c/3ce58b01ada408b372f15b7c992ed0519840e3cf
- git.kernel.orghttps://git.kernel.org/stable/c/5a5d64f0eec82076b2c09fee2195d640cfbe3379
CVECVSSEPSSKEVRExploitTitleMod.
CVE-2026-924176.5 MED49.1%
——15A vulnerability was found in Open5GS up to 2.8.0. This affects the function ogs_pfcp_parse_volume_measurement in the library lib/pfcp/types.c of the component PFCP Handler. The manipulation results in null pointer dereference. The attack may be launched remotely. The patch is identified as 8f07b507b78ff94776f2cd49276eb116ed93d7f2. A patch should be applied to remediate this issue.2dCVE-2026-924134.3 MED37.0%
——11A flaw has been found in Artifex MuPDF up to b6d17493700c621c0e70036980a6ebd06d2202c9. Affected by this vulnerability is the function pdf_open_filter of the file pdf-stream.c of the component PDF Xref Loading. Executing a manipulation can lead to null pointer dereference. The attack can be launched remotely. The exploit has been published and may be used. This patch is called 3df1e30f9d7b77260e13bd0dbe1928ddeba8386e. Applying a patch is advised to resolve this issue.2dCVE-2026-926267.5 HIG30.1%
——9Control iD iDSecure versions prior to 4.8.3.0 are affected by an unauthenticated Denial of Service.
The /api/dguardintegration/dguardVersion endpoint dereferences DGuard integration login state that may be unset, raising an unhandled null reference exception. The exception is thrown from an asynchronous method that returns void, so it is not observed by a caller and can terminate the iDSecure process.2dCVE-2026-776927.5 HIG40.4%
——12An attacker can cause `named` to abort by sending a crafted DNS-over-HTTPS request with a cryptographically invalid SIG(0) record, and then closing the transport connection prematurely.
This issue affects BIND 9 versions 9.20.0 through 9.20.27, 9.21.0 through 9.21.25, and 9.20.9-S1 through 9.20.27-S1.2dCVE-2026-768684.9 MED29.9%
——9Netcore NR255-V version 1.5.130703 contains a null pointer dereference vulnerability in route_policy_add.cgi caused by a missing exit_port parameter. Attackers can send requests lacking the exit_port field to trigger the null pointer dereference, resulting in a denial of service.2dCVE-2026-768654.9 MED29.9%
——9Netcore NR255-V version 1.5.130703 contains a null pointer dereference vulnerability in the QoS setter CGI handlers filter_conn_del_cgi.c and gre_prio_set_cgi.c due to unchecked atoi() results. An attacker can trigger the flaw by supplying crafted input to these handlers, causing a denial of service.2d