CVE-2025-38229 | Linux Kernel up to 6.15.3 media cxusb.c usb_bulk_msg initialization (EUVD-2025-20027)
A vulnerability, which was classified as critical, has been found in Linux Kernel up to 6.15.3. This issue affects the function usb_bulk_msg of the file drivers/media/usb/dvb-usb/cxusb.c of the component media. The manipulation leads to improper initialization.
The identification of this vulnerability is CVE-2025-38229. The attack can only be initiated within the local network. There is no exploit available.
It is recommended to upgrade the affected component.