CVE-2025-38381 | Linux Kernel up to 6.12.36/6.15.5/6.16-rc4 cs40l50-vibra cs40l50_upload_owt null pointer dereference (Nessus ID 271193 / WID-SEC-2025-1653)
A vulnerability was found in Linux Kernel up to 6.12.36/6.15.5/6.16-rc4. It has been rated as critical. The affected element is the function cs40l50_upload_owt of the component cs40l50-vibra. This manipulation causes null pointer dereference.
This vulnerability appears as CVE-2025-38381. The attacker needs to be present on the local network. There is no available exploit.
Upgrading the affected component is advised.