A vulnerability marked as critical has been reported in Linux Kernel up to 6.6.101/6.12.41/6.15.9/6.16.0. Affected by this vulnerability is the function __xfrm_policy_check of the component net. The manipulation leads to memory corruption.

This vulnerability is traded as CVE-2025-38590. Access to the local network is required for this attack to succeed. There is no exploit available.

It is suggested to upgrade the affected component.