CVE-2025-38134 | Linux Kernel up to 6.12.33/6.15.2 acpi usb_acpi_add_usb4_devlink null pointer dereference (EUVD-2025-19809)
A vulnerability was found in Linux Kernel up to 6.12.33/6.15.2. It has been declared as critical. This vulnerability affects the function usb_acpi_add_usb4_devlink of the component acpi. The manipulation leads to null pointer dereference.
This vulnerability was named CVE-2025-38134. The attack needs to be initiated within the local network. There is no exploit available.
It is recommended to upgrade the affected component.