CVE-2025-37813 | Linux Kernel prior 6.6.89/6.12.26/6.14.5/6.15-rc4 xhci prepare_transfer null pointer dereference (Nessus ID 240657 / WID-SEC-2025-0975)
A vulnerability, which was classified as critical, was found in Linux Kernel up to 6.6.88/6.12.25/6.14.4/6.15-rc3/4725344ca645a98a9d8e45e25b01a2244de5b8aa. This affects the function prepare_transfer of the component xhci. Executing manipulation can lead to null pointer dereference.
This vulnerability is tracked as CVE-2025-37813. The attack is only possible within the local network. No exploit exists.
You should upgrade the affected component.