CVE-2025-38639 | Linux Kernel up to 6.1.147/6.6.101/6.12.41/6.15.9/6.16.0 netfilter lib/vsprintf.c nfnl_acct_find_get out-of-bounds (Nessus ID 266176 / WID-SEC-2025-1898)
A vulnerability categorized as critical has been discovered in Linux Kernel up to 6.1.147/6.6.101/6.12.41/6.15.9/6.16.0. This affects the function nfnl_acct_find_get in the library lib/vsprintf.c of the component netfilter. Such manipulation leads to out-of-bounds read.
This vulnerability is listed as CVE-2025-38639. The attack must be carried out from within the local network. There is no available exploit.
It is advisable to upgrade the affected component.