ext4_dir_en_get_name_len in the library include/ext4_dir.h. The manipulation of the argument name_len leads to null pointer dereference.This vulnerability is traded as CVE-2025-70099. Access to the local network is required for this attack to succeed. Furthermore, there is an exploit available.