CVE-2025-38487 | Linux Kernel up to 6.1.146/6.6.99/6.12.39/6.15.7 soc unbind misc_deregister null pointer dereference (WID-SEC-2025-1665)
A vulnerability labeled as critical has been found in Linux Kernel up to 6.1.146/6.6.99/6.12.39/6.15.7. This affects the function misc_deregister of the file /sys/bus/platform/drivers/aspeed-lpc-snoop/unbind of the component soc. The manipulation results in null pointer dereference.
This vulnerability is known as CVE-2025-38487. Access to the local network is required for this attack. No exploit is available.
The affected component should be upgraded.