CVE-2025-38220 | Linux Kernel up to 6.6.94/6.12.34/6.15.3 ext4 ext4_dirty_journalled_data null pointer dereference (EUVD-2025-20036 / Nessus ID 253428)
A vulnerability described as critical has been identified in Linux Kernel up to 6.6.94/6.12.34/6.15.3. This issue affects the function ext4_dirty_journalled_data of the component ext4. Executing manipulation can lead to null pointer dereference.
This vulnerability is handled as CVE-2025-38220. The attack can only be done within the local network. There is not any exploit available.
Upgrading the affected component is recommended.