send_usb_cmd of the component hwmon. The manipulation leads to buffer overflow.This vulnerability was named CVE-2025-38548. The attack needs to be initiated within the local network. There is no exploit available.
It is recommended to upgrade the affected component.