CVE-2025-37947 | Linux Kernel up to 6.1.138/6.6.90/6.12.28/6.14.6/6.15-rc5 ksmbd_vfs_stream_write out-of-bounds (Nessus ID 237223 / WID-SEC-2025-1114)
A vulnerability was found in Linux Kernel up to 6.1.138/6.6.90/6.12.28/6.14.6/6.15-rc5. It has been classified as problematic. This vulnerability affects the function ksmbd_vfs_stream_write. Performing manipulation results in out-of-bounds read.
This vulnerability is identified as CVE-2025-37947. The attack can only be performed from the local network. There is not any exploit available.
Upgrading the affected component is recommended.