CVE-2025-38578 | Linux Kernel up to 6.1.147/6.6.101/6.12.41/6.15.9/6.16.0 f2fs f2fs_sync_inode_meta use after free (Nessus ID 260106 / WID-SEC-2025-1869)
A vulnerability categorized as critical has been discovered in Linux Kernel up to 6.1.147/6.6.101/6.12.41/6.15.9/6.16.0. Affected is the function f2fs_sync_inode_meta of the component f2fs. Such manipulation leads to use after free.
This vulnerability is traded as CVE-2025-38578. Access to the local network is required for this attack to succeed. There is no exploit available.
It is advisable to upgrade the affected component.