CVE-2025-37900 | Linux Kernel up to 6.12.27/6.14.5/6.15-rc4 iommu iommu_copy_struct_from_user null pointer dereference (Nessus ID 242283 / WID-SEC-2025-1114)
A vulnerability, which was classified as critical, was found in Linux Kernel up to 6.12.27/6.14.5/6.15-rc4. Affected is the function iommu_copy_struct_from_user of the component iommu. Executing manipulation can lead to null pointer dereference.
This vulnerability is tracked as CVE-2025-37900. The attack is only possible within the local network. No exploit exists.
You should upgrade the affected component.