CVE-2025-40085 | Linux Kernel up to 6.18-rc1 usb-audio try_to_register_card null pointer dereference
A vulnerability, which was classified as critical, has been found in Linux Kernel up to 6.18-rc1. Impacted is the function try_to_register_card of the component usb-audio. The manipulation leads to null pointer dereference.
This vulnerability is documented as CVE-2025-40085. The attack requires being on the local network. There is not any exploit available.
It is advisable to upgrade the affected component.