CVE-2025-38644 | Linux Kernel up to 6.16.0 wifi ieee80211_tdls_oper uninitialized pointer (Nessus ID 260276 / WID-SEC-2025-1898)
A vulnerability was found in Linux Kernel up to 6.1.147/6.6.101/6.12.41/6.15.9/6.16.0. It has been declared as critical. This vulnerability affects the function ieee80211_tdls_oper of the component wifi. Executing a manipulation can lead to uninitialized pointer.
This vulnerability is tracked as CVE-2025-38644. The attack is only possible within the local network. No exploit exists.
It is recommended to upgrade the affected component.