CVE-2025-38256 | Linux Kernel up to 6.12.35/6.15.4/6.16-rc3 io_uring unpin_user_folio buffer overflow (EUVD-2025-20805)
A vulnerability, which was classified as critical, has been found in Linux Kernel up to 6.12.35/6.15.4/6.16-rc3. Affected by this issue is the function unpin_user_folio of the component io_uring. The manipulation leads to buffer overflow.
This vulnerability is handled as CVE-2025-38256. Access to the local network is required for this attack to succeed. There is no exploit available.
It is recommended to upgrade the affected component.