CVE-2025-38375 | Linux Kernel up to 6.16-rc4 virtio-net xdp_linearize_page out-of-bounds (Nessus ID 253428 / WID-SEC-2025-1653)
A vulnerability classified as problematic was found in Linux Kernel up to 6.16-rc4. The impacted element is the function xdp_linearize_page of the component virtio-net. Executing manipulation can lead to out-of-bounds read.
This vulnerability is tracked as CVE-2025-38375. The attack is only possible within the local network. No exploit exists.
Upgrading the affected component is advised.