CVE-2025-38428 | Linux Kernel up to 6.15.3 ims_pcu_flash_firmware len memory corruption (Nessus ID 250108 / WID-SEC-2025-1653)
A vulnerability was found in Linux Kernel up to 6.15.3. It has been declared as critical. This issue affects the function ims_pcu_flash_firmware. Such manipulation of the argument len leads to memory corruption.
This vulnerability is referenced as CVE-2025-38428. The attack needs to be initiated within the local network. No exploit is available.
It is recommended to upgrade the affected component.