CVE-2025-38289 | Linux Kernel prior 6.15.3/6.16-rc1 scsi dev_loss_tmo_callbk use after free
A vulnerability was found in Linux Kernel up to 6.15.2/e4913d4bc59227fbdfe6b8f5541f49aaea1cb41c. It has been classified as critical. This affects the function dev_loss_tmo_callbk of the component scsi. The manipulation leads to use after free.
This vulnerability is uniquely identified as CVE-2025-38289. Access to the local network is required for this attack. There is no exploit available.
It is recommended to upgrade the affected component.