CVE-2025-38608 | Linux Kernel up to 6.1.147/6.6.101/6.12.41/6.15.9/6.16.0 ktls bpf_msg_pop_data uninitialized pointer
A vulnerability identified as problematic has been detected in Linux Kernel up to 6.1.147/6.6.101/6.12.41/6.15.9/6.16.0. This vulnerability affects the function bpf_msg_pop_data of the component ktls. The manipulation leads to uninitialized pointer.
This vulnerability is traded as CVE-2025-38608. Access to the local network is required for this attack to succeed. There is no exploit available.
You should upgrade the affected component.