CVE-2025-38166 | Linux Kernel up to 6.1.141/6.6.93/6.12.33/6.15.2 bpf lib/iov_iter.c bpf_exec_tx_verdict denial of service (EUVD-2025-19778 / Nessus ID 249177)
A vulnerability identified as critical has been detected in Linux Kernel up to 6.1.141/6.6.93/6.12.33/6.15.2. This affects the function bpf_exec_tx_verdict in the library lib/iov_iter.c of the component bpf. The manipulation leads to denial of service.
This vulnerability is traded as CVE-2025-38166. Access to the local network is required for this attack to succeed. There is no exploit available.
You should upgrade the affected component.