CVE-2025-38266 | Linux Kernel up to 6.15.1 pinctrl pinctrl-mtk-common-v2.h mtk_eint_do_init soc null pointer dereference (WID-SEC-2025-1522)
A vulnerability identified as critical has been detected in Linux Kernel up to 6.15.1. The impacted element is the function mtk_eint_do_init in the library pinctrl-mtk-common-v2.h of the component pinctrl. The manipulation of the argument soc leads to null pointer dereference.
This vulnerability is referenced as CVE-2025-38266. The attack needs to be initiated within the local network. No exploit is available.
You should upgrade the affected component.