CVE-2025-38209 | Linux Kernel up to 6.15.3 nvme_tcp_setup_ctrl use after free (EUVD-2025-20047)
A vulnerability was found in Linux Kernel up to 6.15.3. It has been classified as critical. Affected is the function nvme_tcp_setup_ctrl. The manipulation leads to use after free.
This vulnerability is traded as CVE-2025-38209. The attack needs to be initiated within the local network. There is no exploit available.
It is recommended to upgrade the affected component.