CVE-2025-38500 | Linux Kernel up to 6.6.100/6.12.40/6.15.8 xfrm net/core/dev.c xfrmi_changelink use after free (Nessus ID 260032 / WID-SEC-2025-1810)
A vulnerability was found in Linux Kernel up to 6.6.100/6.12.40/6.15.8. It has been declared as critical. This impacts the function xfrmi_changelink of the file net/core/dev.c of the component xfrm. Executing a manipulation can lead to use after free.
This vulnerability is registered as CVE-2025-38500. The attack requires access to the local network. No exploit is available.
It is recommended to upgrade the affected component.