CVE-2025-38455 | Linux Kernel up to 6.1.145/6.6.98/6.12.38/6.15.6/6.16-rc5 kvm_vm_ioctl_create_vcpu memory corruption (EUVD-2025-22686 / Nessus ID 253428)
A vulnerability was found in Linux Kernel up to 6.1.145/6.6.98/6.12.38/6.15.6/6.16-rc5. It has been declared as critical. Affected by this issue is the function kvm_vm_ioctl_create_vcpu. The manipulation results in memory corruption.
This vulnerability is identified as CVE-2025-38455. The attack can only be performed from the local network. There is not any exploit available.
It is recommended to upgrade the affected component.