CVE-2025-22003 | Linux Kernel up to 6.6.84/6.12.20/6.13.8 ucan strscpy out-of-bounds (Nessus ID 241070 / WID-SEC-2025-0698)
A vulnerability identified as problematic has been detected in Linux Kernel up to 6.6.84/6.12.20/6.13.8. The impacted element is the function strscpy of the component ucan. Performing a manipulation results in out-of-bounds read.
This vulnerability was named CVE-2025-22003. The attack needs to be approached locally. There is no available exploit.
You should upgrade the affected component.