CVE-2025-38098 | Linux Kernel up to 6.12.30/6.14.8 create_validate_stream_for_sink null pointer dereference (EUVD-2025-19765 / Nessus ID 253428)
A vulnerability was found in Linux Kernel up to 6.12.30/6.14.8 and classified as critical. This affects the function create_validate_stream_for_sink. Such manipulation leads to null pointer dereference.
This vulnerability is documented as CVE-2025-38098. The attack requires being on the local network. There is not any exploit available.
It is suggested to upgrade the affected component.