CVE-2025-38303 | Linux Kernel up to 6.12.33/6.15.2/6.16-rc1 Bluetooth eir_create_adv_data denial of service
A vulnerability was found in Linux Kernel up to 6.12.33/6.15.2/6.16-rc1. It has been classified as critical. Affected is the function eir_create_adv_data of the component Bluetooth. The manipulation leads to denial of service.
This vulnerability is traded as CVE-2025-38303. The attack needs to be approached within the local network. There is no exploit available.
It is recommended to upgrade the affected component.