CVE-2025-37801 | Linux Kernel up to 6.1.135/6.6.88/6.12.25/6.14.4/6.15-rc2 spi spi_imx_setupxfer null pointer dereference (Nessus ID 237504 / WID-SEC-2025-0975)
A vulnerability identified as critical has been detected in Linux Kernel up to 6.1.135/6.6.88/6.12.25/6.14.4/6.15-rc2. This vulnerability affects the function spi_imx_setupxfer of the component spi. This manipulation causes null pointer dereference.
This vulnerability is handled as CVE-2025-37801. The attack can only be done within the local network. There is not any exploit available.
You should upgrade the affected component.