CVE-2025-38428 | Linux Kernel up to 6.15.3 ims_pcu_flash_firmware len memory corruption
A vulnerability was found in Linux Kernel up to 6.15.3. It has been classified as critical. This affects the function ims_pcu_flash_firmware. The manipulation of the argument len leads to memory corruption.
This vulnerability is uniquely identified as CVE-2025-38428. The attack needs to be approached within the local network. There is no exploit available.
It is recommended to upgrade the affected component.