A vulnerability, which was classified as critical, was found in Linux Kernel. The affected element is the function
cancel_delayed_work
of the component mvsas. The manipulation results in use after free.
This vulnerability is identified as CVE-2025-40001. The attack can only be performed from the local network. There is not any exploit available.
You should upgrade the affected component.