CVE-2025-21794 | Linux Kernel up to 6.6.78/6.12.15/6.13.3/6.14-rc1/6.14-rc2 usb.c usb_check_int_endpoints out-of-bounds (Nessus ID 233595 / WID-SEC-2025-0453)
A vulnerability categorized as problematic has been discovered in Linux Kernel up to 6.6.78/6.12.15/6.13.3/6.14-rc1/6.14-rc2. The impacted element is the function usb_check_int_endpoints of the file usb.c. Such manipulation leads to out-of-bounds read.
This vulnerability is listed as CVE-2025-21794. The attack must be carried out from within the local network. There is no available exploit.
It is advisable to upgrade the affected component.