CVE-2025-38303 | Linux Kernel up to 6.12.33/6.15.2/6.16-rc1 Bluetooth eir_create_adv_data denial of service (Nessus ID 253428 / WID-SEC-2025-1522)
A vulnerability classified as critical has been found in Linux Kernel up to 6.12.33/6.15.2/6.16-rc1. This vulnerability affects the function eir_create_adv_data of the component Bluetooth. The manipulation leads to denial of service.
This vulnerability is listed as CVE-2025-38303. The attack must be carried out from within the local network. There is no available exploit.
It is recommended to upgrade the affected component.