CVE-2025-38718 | Linux Kernel up to 6.17-rc1 sctp_rcv uninitialized pointer (Nessus ID 261554 / WID-SEC-2025-1976)
A vulnerability was found in Linux Kernel up to 6.17-rc1. It has been declared as critical. Impacted is the function sctp_rcv. Such manipulation leads to uninitialized pointer.
This vulnerability is referenced as CVE-2025-38718. The attack needs to be initiated within the local network. No exploit is available.
It is recommended to upgrade the affected component.