CVE-2025-38646 | Linux Kernel up to 6.6.101/6.12.41/6.15.9/6.16.0 wifi rtw89_vif_rx_stats_iter null pointer dereference (Nessus ID 260274 / WID-SEC-2025-1898)
A vulnerability classified as critical has been found in Linux Kernel up to 6.6.101/6.12.41/6.15.9/6.16.0. The impacted element is the function rtw89_vif_rx_stats_iter of the component wifi. Performing manipulation results in null pointer dereference.
This vulnerability is known as CVE-2025-38646. Access to the local network is required for this attack. No exploit is available.
It is recommended to upgrade the affected component.