CVE-2025-38256 | Linux Kernel up to 6.12.35/6.15.4/6.16-rc3 io_uring unpin_user_folio buffer overflow (EUVD-2025-20805 / Nessus ID 258053)
A vulnerability was found in Linux Kernel up to 6.12.35/6.15.4/6.16-rc3. It has been classified as critical. This impacts the function unpin_user_folio of the component io_uring. This manipulation causes buffer overflow.
This vulnerability is registered as CVE-2025-38256. The attack requires access to the local network. No exploit is available.
Upgrading the affected component is recommended.