In the Linux kernel, the following vulnerability has been resolved:
ice: add NULL check in eswitch lag check
The function icelagisswitchdevrunning() is being called from outside of the LAG event handler code. This results in the lag->upper_netdev being NULL sometimes. To avoid a NULL-pointer dereference, there needs to be a check before it is dereferenced.
[
{
"target": {
"function": "ice_lag_is_switchdev_running",
"file": "drivers/net/ethernet/intel/ice/ice_lag.c"
},
"digest": {
"length": 447.0,
"function_hash": "45361433868362237677315083961513913453"
},
"signature_version": "v1",
"source": "https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git@5a5d64f0eec82076b2c09fee2195d640cfbe3379",
"deprecated": false,
"signature_type": "Function",
"id": "CVE-2025-38526-17d15771"
},
{
"target": {
"file": "drivers/net/ethernet/intel/ice/ice_lag.c"
},
"digest": {
"line_hashes": [
"284146024819732054530645241914204307039",
"291535131304140425461580048578845241186",
"313188031775400023883736808010531079153",
"315445648201453231175158084965971923697"
],
"threshold": 0.9
},
"signature_version": "v1",
"source": "https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git@3ce58b01ada408b372f15b7c992ed0519840e3cf",
"deprecated": false,
"signature_type": "Line",
"id": "CVE-2025-38526-28a1347e"
},
{
"target": {
"function": "ice_lag_is_switchdev_running",
"file": "drivers/net/ethernet/intel/ice/ice_lag.c"
},
"digest": {
"length": 447.0,
"function_hash": "45361433868362237677315083961513913453"
},
"signature_version": "v1",
"source": "https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git@3ce58b01ada408b372f15b7c992ed0519840e3cf",
"deprecated": false,
"signature_type": "Function",
"id": "CVE-2025-38526-833591ec"
},
{
"target": {
"file": "drivers/net/ethernet/intel/ice/ice_lag.c"
},
"digest": {
"line_hashes": [
"284146024819732054530645241914204307039",
"291535131304140425461580048578845241186",
"313188031775400023883736808010531079153",
"315445648201453231175158084965971923697"
],
"threshold": 0.9
},
"signature_version": "v1",
"source": "https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git@5a5d64f0eec82076b2c09fee2195d640cfbe3379",
"deprecated": false,
"signature_type": "Line",
"id": "CVE-2025-38526-f8500e54"
}
]