CVE-2025-38686 | Linux Kernel up to 6.12.42/6.15.10/6.16.1/6.17-rc1 userfaultfd split_huge_pmd denial of service (Nessus ID 261592 / WID-SEC-2025-1976)
A vulnerability was found in Linux Kernel up to 6.12.42/6.15.10/6.16.1/6.17-rc1. It has been classified as critical. The affected element is the function split_huge_pmd of the component userfaultfd. This manipulation causes denial of service.
This vulnerability is tracked as CVE-2025-38686. The attack is only possible within the local network. No exploit exists.
Upgrading the affected component is recommended.