CVE-2025-38654 | Linux Kernel up to 6.15.9/6.16.0 devm_pinctrl_register uninitialized pointer (Nessus ID 276629 / WID-SEC-2025-1898)
A vulnerability described as critical has been identified in Linux Kernel up to 6.15.9/6.16.0. This impacts the function devm_pinctrl_register. Executing a manipulation can lead to uninitialized pointer.
This vulnerability appears as CVE-2025-38654. The attacker needs to be present on the local network. There is no available exploit.
Upgrading the affected component is recommended.