CVE-2025-38077 | Linux Kernel up to 5.15.184/6.1.140/6.6.92/6.12.30/6.14.8 current_password_store length buffer overflow (EUVD-2025-18576 / Nessus ID 242347)
A vulnerability labeled as critical has been found in Linux Kernel up to 5.15.184/6.1.140/6.6.92/6.12.30/6.14.8. Affected by this issue is the function current_password_store. Such manipulation of the argument length leads to buffer overflow.
This vulnerability is documented as CVE-2025-38077. The attack requires being on the local network. There is not any exploit available.
The affected component should be upgraded.