CVE-2025-21927 | Linux Kernel up to 6.12.18/6.13.6 Header Length nvme_tcp_recv_pdu memory corruption (Nessus ID 235003 / WID-SEC-2025-0683)
A vulnerability was found in Linux Kernel up to 6.12.18/6.13.6. It has been declared as critical. Affected by this issue is the function nvme_tcp_recv_pdu of the component Header Length Handler. Executing a manipulation can lead to memory corruption.
The identification of this vulnerability is CVE-2025-21927. The attack needs to be done within the local network. There is no exploit available.
It is recommended to upgrade the affected component.