CVE-2025-37974 | Linux Kernel up to 6.12.28/6.14.6/6.15-rc5 zpci_create_device null pointer dereference (Nessus ID 240824 / WID-SEC-2025-1114)
A vulnerability was found in Linux Kernel up to 6.12.28/6.14.6/6.15-rc5 and classified as critical. This affects the function zpci_create_device. The manipulation results in null pointer dereference.
This vulnerability was named CVE-2025-37974. The attack needs to be approached within the local network. There is no available exploit.
It is suggested to upgrade the affected component.